Skip to content
0
  • Home
  • Piero Bosio
  • Blog
  • World
  • Fediverso
  • News
  • Categories
  • Old Web Site
  • Recent
  • Popular
  • Tags
  • Users
  • Home
  • Piero Bosio
  • Blog
  • World
  • Fediverso
  • News
  • Categories
  • Old Web Site
  • Recent
  • Popular
  • Tags
  • Users
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse

Piero Bosio Social Web Site Personale Logo Fediverso

Social Forum federato con il resto del mondo. Non contano le istanze, contano le persone
cr0w@infosec.exchangeundefined

cR0w :cascadia: :gayint:

@cr0w@infosec.exchange
About
Posts
125
Topics
17
Shares
0
Groups
0
Followers
0
Following
0

View Original

Posts

Recent Best Controversial

  • Hi, yes, welcome to Mozilla Burger.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    Hi, yes, welcome to Mozilla Burger. It's true our burgers come with asbestos but the good news is you can pick it off yourself. Look how easy that is. No we can't make a burger without it and let you add it yourself later. Why would we do that?

    Uncategorized

  • New Cisco zero-day, this one one discovered by the ASD
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @campuscodi "New" might be a bit of a stretch.

    https://blog.talosintelligence.com/uat-8616-sd-wan/

    After the discovery of active exploitation of the 0-day in the wild, we were able to find evidence that the malicious activity went back at least three years (2023).

    Uncategorized

  • Ever want to launch kittens into space?
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @catsalad @Sempf Exactly. Operations like that don't just happen.

    But no, that's probably the third or fourth time I've posted that one in the past week. I liked how it turned out so I keep using it wherever I can.

    Uncategorized

  • Ever want to launch kittens into space?
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @catsalad I am become death. Destroyer of moons.

    Uncategorized

  • Ever want to launch kittens into space?
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @catsalad Catte in space?!

    Uncategorized

  • I may have to add Moldova to my list of countries I may not be able to visit.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @PogoWasRight @cloudsek @amvinfe @campuscodi @euroinfosec @lawrenceabrams

    Uncategorized suspectfile databreach leak vulnerability cariere compensatii govsec cybersecurity

  • I am LOVING seeing so many AI projects being paused or binned.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @SecurityWriter moar plz ๐Ÿ‘‰ ๐Ÿ‘ˆ ๐Ÿฅบ

    Uncategorized

  • AI is already dead; we are pivoting to crabs.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @phooky I shall resist the crabs as well. ๐Ÿช’

    Uncategorized

  • I made a 1200 page book.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @da_667 Rumor has it Microsoft is a bunch of people playing chicken like the yodeler in Price is Right and just want to pump and bail right before the crash. Everything they do these days supports that rumor so...

    Uncategorized

  • Today in InfoSec Job Security News:
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @GossiTheDog If only a significant number of security practitioners could have seen it coming and warned people.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @boblord @hotsoup Thanks but I'm not in a position to make change through political or industrial ways. But some people are.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @hotsoup @boblord Exactly. So much in tech says it's engineering but it's not. Engineering requires an understanding of how things work. But tech is about how to make money the fastest.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @boblord @hotsoup Fines. Look at the auto industry. Transmissions fail to park, gas tanks explode, Lancias rust like a trans girl's GitHub history, you get the idea. But they were fined. Publicly traded corporations only care about the feelings of their investors. Kick them in those plums and they'll start trying to improve instead of finding cheap ways to hide their cheap failures.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @boblord I believe you want to improve things, I really do. But I think in order to get there, computer science needs to be engineering-focused rather than business-focused. And it's not. Especially in academia.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @boblord First and foremost, they hold manufacturers responsible for poor engineering. In tech it's just "LOL patch if you can." Without that, respectfully, the comparison is not valid.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @brahms @ckure @boblord It's a fair point but I dislike it specifically because if the arguing about it. Full disclosure means people are either patching / mitigating or they're whining.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @meatzie @ckure @boblord If they don't get rejected by the CNA. I'll try to remember to search through the rejected ones. I bet there are 50+ from Fortinet alone in 2025.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @ckure @boblord Yep. And which one is in the vendors' best interests, especially with such a corpo friendly US regime? I am completely back in the full disclosure train. It's the most effective and efficient way to protect critical infrastructure.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    @winterknight1337 Now it's getting interesting.

    Uncategorized

  • Hot take (?): No company should be the CNA for their own products.
    cr0w@infosec.exchangeundefined cr0w@infosec.exchange

    RE: https://infosec.exchange/@boblord/116075393614821884

    Hot take (?): No company should be the CNA for their own products.

    Uncategorized
  • 1 / 1
  • Login

  • Login or register to search.
  • First post
    Last post