Application Security Pro, cutting through the hype, continuously improving and sharing quality techn content | OSCP, CISSP, MS Software Dev - Boston UniversityJoined April 2019
5 things you must do as a new developerš
1. You must start now
2. You must be consistent
3. You must build projects
4. You must join a community
5. You must code along when using a tutorial/course
What would you add to this list?
Awesome new opportunity to join our growing AppSec squad! Looking for anyone with a passion for software security, continuous learning and helping our dev teams run fast and stay secure paychex.recsolu.com/jobs/2wtGkCjz5ā¦
If you work with app devs and struggle to succinctly answer the question āWhat should I be logging?ā, this is a fantastic resource to get started from!
If you work with app devs and struggle to succinctly answer the question āWhat should I be logging?ā, this is a fantastic resource to get started from!
Cloud Learning Protip: If you can afford it, set aside $15-25 a paycheck to pay for machines/services so you can learn-by-doing.
It's a really solid way to build something and gain some level of experience.
Be real, you've spent more money on dumber things. Invest in yourself.
As a college kid in ā08, reading the DNS research by @dakami totally blew my mind and was a huge part of what led me to chase a career in infosec. You are an inspiration, your passion and warmth was contagious and it lit a fire in me as well as many many others. Rest In Peace
1/2 Donāt view XSS as a vulnerability that needs fixing - youāll end up playing āwhack-a-moleā till kingdom comes. Instead view ālack of context-aware automated output escapingā in all of your web application frameworks as the issue that needs fixing.
1/2 Donāt view XSS as a vulnerability that needs fixing - youāll end up playing āwhack-a-moleā till kingdom comes. Instead view ālack of context-aware automated output escapingā in all of your web application frameworks as the issue that needs fixing.
Starting in one hour, @devops_rob will join us @Owasp_DevSlop and discuss secret management and what challenges a developer may face when their code meets secrets including how to implement simple API driven workflows. š: youtu.be/Ol4HEhhwobs
Damn-Vulnerable-GraphQL-Application - Damn Vulnerable GraphQL Application Is An Intentionally Vulnerable Implementation Of Facebook's GraphQL Technology, To Learn And Practice GraphQL Security ift.tt/3ahdIK8#security#pentest#hacking#hacker#tools
Fantastic presentation w/ lots of live coding & review by @manicode and @ronperris on XSS in React! Some really quality conversation about entity vs attribute encoding, and ensuing fixes are comprehensive. Highly recommended
Fantastic presentation w/ lots of live coding & review by @manicode and @ronperris on XSS in React! Some really quality conversation about entity vs attribute encoding, and ensuing fixes are comprehensive. Highly recommended
Thatās a real one right there! In the same vain, a deep knowledge of fundamentals in web security and software proves hugely more valuable than trying to chase the latest obscure attacks and overhyped products
Whenever I get discouraged and want to quit something, I remember the words of my then 3 year-old after she puked carrots all over the living room floor: "I'm gonna need more carrots."
479 Followers 2K FollowingWith the use of latest technologies, we create digital products that help businesses differentiate themselves from their competitors.
204 Followers 2K FollowingOwner of MIA Culture Media Company, researching investment, investing in China Resources Group's real estate company, tweets more focus on sharing personal life
1K Followers 2K FollowingDistinguished Engineer, Application Security @GEICO. #AppSec at #DevOps speed. Author of Code Doctorās Law ~ āAll input is evil, always." Tweets are my own.
691 Followers 6K FollowingShadow banned exposing truth! Don't put off until tomorrow what u can do today. tomorrow is not promised. truth. #anonymous #hacktheplanet šŗšøšµšø
2K Followers 4K FollowingInternational SOC & SIEM service provider based in the UK. Cyber defence has literally never been this SIEMple #SOC #SIEM #infosec #CyberSecurity #Vuln
568 Followers 597 FollowingSecurity talk, foster pet and occasional Burning Man or concert photos. Purple Team/AppSec enthusiast. Political; Silence=Death. Speaking solely for myself.
23K Followers 6K FollowingAdvocate for AI & Security | I hack into things sometimes. Opinions are mine. Fortis fortuna adiuvat. It's a good time to cause a little chaos.
6K Followers 371 Followingš¼ Principal Security Engineer
š¬ I tweet about Cloud Security and technical leadership
āš» Subscribe to https://t.co/MR69KiF8RH
š https://t.co/TrQKzxfnYg is out now!
6K Followers 2K FollowingStaff Security Researcher @datadoghq | DEF CON/Black Hat main stage speaker | he/him | OSCP OSWE | Tweets are my own | Created https://t.co/QGWMJjv9pc
568 Followers 597 FollowingSecurity talk, foster pet and occasional Burning Man or concert photos. Purple Team/AppSec enthusiast. Political; Silence=Death. Speaking solely for myself.
909 Followers 1K FollowingFirst principles, IT historian trying to prevent repeating mistakes from prior years... Lover of Logsā¦.Tesla, Apple, BloombergTV fan
23K Followers 6K FollowingAdvocate for AI & Security | I hack into things sometimes. Opinions are mine. Fortis fortuna adiuvat. It's a good time to cause a little chaos.