I just completed #WAF: Introduction room on TryHackMe. Learn about Web Application Firewalls and what differentiates them from other types of firewalls.
#DefenceInDepth
https://tryhackme.com/room/wafintroduction?utm_campaign=social_share&utm_medium=social&utm_content=room&utm_source=twitter&sharerId=60cb2598c59a6e0042c78aed via @RealTryHackMe
WAF: Introduction

Learn about Web Application Firewalls and what differentiates them from other types of firewalls.

TryHackMe
My friends on the Internet still keep asking my websites for files they don't have. I hope the random garbage, Cloudflare and Fail2Ban blocks and pointless API keys are keeping them busy.... #defenceindepth

 #TheTelegraph

ℹ In the first episode of the second series of #DefenceInDepth, #DominicNicholls, #TheTelegraph’s Associate Editor, speaks to Lt Gen. Kyrylo #Budanov, #Ukraine’s head of #military #intelligence

In an exclusive interview, Gen. #Budanov says Western nations are providing “priceless” intelligence support locating the launch sites of russian missiles being fired at #Ukraine

https://youtu.be/Lv-cwK5WNwg?feature=share

Ukraine military spy chief vows revenge on Russia over wife's poisoning | Defence in Depth special

YouTube

#Telegraph #DefenceInDepth

'Pull Russia's poisonous teeth': Zelensky's war chief on Hitler, Putin & recruits | Defence in Depth

To mark the two-year anniversary of Russia’s full scale invasion of Ukraine, The Telegraph was given exclusive access with some of the most powerful figures in President Zelensky’s administration: Oleksiy Danilov, the overarching coordinator of the country's war cabinet.

https://www.youtube.com/watch?v=2fxFRcrJfc4

#Danilov
#Ukraine #War #StandWithUkraine

'Pull Russia's poisonous teeth': Zelensky's war chief on Hitler, Putin & recruits | Defence in Depth

YouTube
@DeborahForPlus He should also threaten to prosecute families who kick children out or harm them in retaliation for being trans or gender non-conforming. Its helpfulness will necessarily be limited compared to enforcing a no-outing policy on genuine institutions with real bureaucracies and, often, lawyers, but, hey, that's often the case with #DefenceInDepth .

I used to have a sail boat. One of the most important #safety rules in sailing is "don't sail on a schedule".

What this means is that if you have a destination & a deadline, you will override safety signals (like weather) & travel in unsafe conditions due to deadline pressure. This is how serious accidents happen while sailing.

Planning for sailing puts an emphasis on having a checklist that includes having situational awareness of issues like boat condition, charts, & weather by explicitly checking the marine weather forecasts.

Also you have to be prepared to bail on your destination & schedule if the safety signals change. You have to know where your closest port is to seek shelter if a storm arises.

It occurred to me that the #airbornePrecautions equivalent is "don't be task focused on a deadline".

The need to get a task done by a deadline causes you to lose situational awareness, & accept risk that you would not otherwise accept if you thought your safety plan through ahead of time.

This is exacerbated by the total lack of a danger signal in society right now. No mitigations visible. Out of sight, out of mind.

This bit me yesterday getting a vaccination from an unmasked pharmacist in a small room. I took a risk I should not have, because I lost situational awareness under the drive to get the task done. I never would have accepted that risk in my pre-thought out safety plan. But it just popped up in the middle of the task, & I let it slide because I wasn't situationally aware.

Now, ofc I was wearing #P100 #elastomeric so the risk here is relative due to #DefenceInDepth. My event was ocular exposure during high water mark for community transmission, not being maskless. But it is not a risk I would have taken in a pre-thought through safety plan.
And that's the big deal now. Every little ordinary task needs a safety plan.

It's frustrating. It's exhausting.

When it goes wrong, when the safety signals change, when you get off plan, you have to be prepared to "bail". Halt a task, walk out, cancel, reschedule. Find a safe port in the new storm.

I should have refused entry with a maskless pharmacist. Cancelled, requested accommodation & rescheduled.

This is a kind of risk "velocitization" that happens. I am getting velocitized into one-way masking even during high #community #transmission periods. Everyone else but me unmasked is the new normal.

This is how accidents happen - a bunch of little issues leading to an unwanted, unplanned outcome.

#SARS2 #sarscov2 #COVID19 #riskManagement #risk

My #PPE regime

#N95 outdoors
#P100 elastomeric indoors
#HEPA for long duration indoors
#Ocular protection when #sars2 weather is bad & density is high
#CO2 monitor to assess risk level

#CovidIsNotOver #WearARespirator #RespiratorsWork #DefenceInDepth

@mathieu @loke A second factor of authentication is something you have and should be separate from the device you're trying to authenticate on. A password manager really doesn't meet the requirement IMO. Also the device itself should authenticated to the network. #defenceindepth
In cyber security: is defense-in-depth really traceability-in-depth?

Building barriers doesn’t matter that much when a threat can teleport into the core infrastructure. However, creating multiple layers by using various techniques requires the threat actor to show how he would traverse the barriers (his techniques). This, increasing his risk of detection.

Result would be a modest set of behavioral indicators when encountering cyber operations.

In my opinion this is a better way to view this concept in the cyber domain. Changing views will also change the way we build these barriers, with logging for instance.

#defenceindepth #traceability #architecture #physical #logical