Please welcome TechniRise Consulting Inc. as our latest returning Silver sponsor for BSides Saskatoon in 2025!

TechniRise Consulting Inc. is at the forefront of Cyber Security, providing comprehensive solutions to safeguard your digital assets. With a team of seasoned experts and cutting-edge technologies, they ensure that your organization is resilient against evolving cyber threats.

Tickets are selling fast! Get them today at https://bsidesyxe.ca

#BSides #BSidesYXE #Saskatoon #InforSec

Another example of why vendor #riskmanagement is crucial. Vet your vendors. Ask for SBOMs to spot code library vulnerabilities, assess their #cybersecurity risk, and add contractual #databreach notification policies. Contact us if you need help. https://arstechnica.com/security/2024/07/384000-sites-link-to-code-library-caught-performing-supply-chain-attack/
#CISO #inforsec #ITsecurity #cyberaware
384,000 sites pull code from sketchy code library recently bought by Chinese firm

Many website admins, it seems, have yet to get memo to remove Polyfill[.]io links.

Ars Technica
👉WORKING👈 key revocation lists in SSH would be very useful.
I emphasize "working" as most implementations of CRLs are an adhoc mess I would not describe as "working".
The web-of-trust [I still love you PGP/GPG] is an idea that needs a revival.
#ssh #opensource #inforsec #security #openssh
https://mjg59.dreamwidth.org/68721.html
Captcha Check

TRIODEOfficial - Twitch

Gerry's 62nd Bday Bash & Mental Health Charity Raid Train

Twitch
Thoughts on #GhostSec claims on #ICS / #RTU "ransomware" but also what industrial #ransomware would really mean and imply should it be observed in the wild. #OT #inforsec #cyberwarfare
https://pylos.co/2023/01/12/embedded-system-ransomware-and-the-meaning-of-criminal-operations/
Embedded System Ransomware and the Meaning of Criminal Operations

On 11 January 2023, the “Ghost Security Group” (commonly referred to as “GhostSec”) issued a bold claim (captured on Twitter, among other places) that they “encrypted the first RTU in history.” The…

Stranded on Pylos
@australeo @riskybusiness Heck, if you work in IT and aren't a regular listener then you're missing out. I may not have #inforsec in my job title but it's everyone's responsibility. When I'm advising my customers whether to migrate form On-premises exchange , whether the latest big scare affects them or how often to test their DR plan, then the resources that Patrick puts at my disposal are indispensable. Also it's genuinely entertaining.