Skip Navigation
Posts
36
Comments
18
Joined
2 yr. ago
appsec @infosec.pub
N7x @infosec.pub

Snyk prices are getting very high. Has anyone moved away from them? Which alternative did you choose?

Found this interesting list: https://list.latio.tech/

On the open source side, there is https://www.dependencytrack.org/

  • Oh nice, wasn't aware of this, definitely looks interesting, thanks! I am an OSCP holder as well.

  • cybersecurity @infosec.pub
    N7x @infosec.pub

    Looking for a new training/certification. People who did OSWA (Web-200 by OffSec), how was it?

    appsec @infosec.pub
    N7x @infosec.pub

    Looking for a new training/certification. People who did OSWA (Web-200 by OffSec), how was it?

    appsec @infosec.pub
    N7x @infosec.pub

    Threat Modeling program milestones: A journey to scale

    appsec @infosec.pub
    N7x @infosec.pub

    Recommended AppSec conferences in Europe?

    cross-posted from: https://infosec.pub/post/8123190

    Hello everyone,

    I work in appsec, my manager would like to send us to a conference this year. We are based in Europe, and the company would like to across intercontinental travel.

    I have OWASP Global 2024 in Lisbon on my radar, as well as the BlackHat EU in London, is there any other conference you guys would recommend?

    cybersecurity @infosec.pub
    N7x @infosec.pub

    Recommended AppSec conferences in Europe?

    Hello everyone,

    I hope this post belongs here, otherwise I'll move it to [email protected].

    I work in appsec, my manager would like to send us to a conference this year. We are based in Europe, and the company would like to across intercontinental travel.

    I have OWASP Global 2024 in Lisbon on my radar, as well as the BlackHat EU in London, is there any other conference you guys would recommend?

    appsec @infosec.pub
    N7x @infosec.pub
    appsec @infosec.pub
    N7x @infosec.pub
  • Why the downvotes? This is a call for speakers to a security conference

  • appsec @infosec.pub
    N7x @infosec.pub
    appsec @infosec.pub
    N7x @infosec.pub

    We Must Consider Software Developers a Key Part of the Cybersecurity Workforce

    appsec @infosec.pub
    N7x @infosec.pub

    OWASP Foundation - 2024 Global AppSec Lisbon Call for Trainers

    appsec @infosec.pub
    N7x @infosec.pub

    #213 - AWS Secure Defaults, Damn Vulnerable LLM Agent, cdk-goat

    appsec @infosec.pub
    N7x @infosec.pub
    appsec @infosec.pub
    N7x @infosec.pub
    appsec @infosec.pub
    N7x @infosec.pub
    appsec @infosec.pub
    N7x @infosec.pub

    Community review - OWASP Mobile Application Security risk assessment formula

  • Nice resources

  • Thank you!

  • That's kind of legacy debt at some point. I understand why they still want to move towards evolving the standard

  • cybersecurity @infosec.pub
    N7x @infosec.pub
    cybersecurity @infosec.pub
    N7x @infosec.pub

    cross-posted from: https://lemmy.capebreton.social/post/82259

    OSLO, July 24 (Reuters) - Twelve Norwegian government ministries have been hit by a cyber attack, the Norwegian government said on Monday, the latest attack to hit the public sector of Europe's largest gas supplier and NATO's northernmost member.

    "We identified a weakness in the platform of one of our suppliers. That weakness has now been shut," Erik Hope, head of the government agency in charge of providing services to ministries, told a news conference.

    The attack was identified due to "unusual" traffic on the supplier's platform, Hope said, declining to provide specifics. It was uncovered on July 12 and was being investigated by police.

    "It is too early to say who is back this and what is the extent of the impact (of the attack)," he said.

    Security News @infosec.pub
    N7x @infosec.pub

    RIP

    cybersecurity @infosec.pub
    N7x @infosec.pub

    Google Cloud Build bug lets hackers launch supply chain attacks

  • Finally done with my 120 CPEs for my CISSP. That was a long ride, happy to be done with it

  • Thank you for this!

  • Be careful, 2FA still has issues at the moment: https://github.com/LemmyNet/lemmy/issues/3309

  • You have to provide some kind of documentation on the podcast. I've read about people submitting a spreadsheet every month with links, topics and duration

  • Thank you!

  • Historical decisions seem to be the most common reasons

  • Nix has been on my radar for a while too. The approach is takes to reproducibility looks very interesting

  • Thank you!