garthoid (he/him)

352 Followers
510 Following
2K Posts
Father, Husband, Software Security Architect, Ethical Hacker, Musician, & Karate Geek. OWASP Ottawa Chapter Leader. DeviousPlan founder. Opinions are my own. #StandWithUkraine

Join me, Katie Paxton-Fear (Semgrep), Joni Klippert (Stackhawk), Kurt Boberg, Derian Stenglein, and Diptendu Kar on April 15th, for a lively panel to kick off #SnowFroc 2026! "Agentically Engineered: How AI Agents Are Rewriting the DNA of AppSec". Note: seats are limited!

https://twp.ai/E6HiH6

OWASP Ottawa would like to extend its gratitude to @garthoid (a.k.a, Garth Boyd) for an insightful presentation on their topic, "We know what you hide in JS" at our March 2026 meetup!

The topic was well-presented and a goldmine for developers and cybersecurity professionals, explaining what can go wrong when applications depend on client-side controls for securing web applications, and how to detect the presence of such secrets or other interesting patterns in JavaScript code.

Thank you once again, Garth! 👏

If you missed this session, you can catch the recording of this session on our YouTube channel, along with recordings of other sessions from our awesome speakers!

📹 : https://www.youtube.com/watch?v=fTBf49d84Yo

#cybersecurity #owasp #ottawa #appsec #javascript

Tommy Douglas : le père du régime public de santé

Premier ministre de la Saskatchewan (1944–1961), Tommy Douglas a instauré le premier programme d’assurance-maladie universelle au Canada. Son rêve d'un accès aux soins pour tous a transformé le pays. 🇨🇦 #Canada #TommyDouglas #SantéPublique #Histoire

https://www.thecanadianencyclopedia.ca/fr/article/tommy-douglas

L'Anse aux Meadows Viking Settlement

Step back in time at L'Anse aux Meadows, Newfoundland! 🏞️ This UNESCO site is the only authenticated Viking settlement in North America, proving Norse explorers reached Canada 1,000 years ago! 🧭 #Canada #Vikings #Newfoundland

https://www.thecanadianencyclopedia.ca/en/article/lanse-aux-meadows

A better world is possible.

A few months ago, a Canadian judge got her #amazon , #google , #uber, credit cards accounts, etc. closed.

She was doing her job investigating war crimes made in Afghanistan, including by the #USA

That offended Americans. They decided to close all her accounts, which they have control over.

I'm expecting this behavior to become more and more common.

This is why #canada should work on #digitalsovereignty

https://www.irishtimes.com/world/us/2025/12/12/its-surreal-us-sanctions-lock-international-criminal-court-judge-out-of-daily-life/

‘It’s surreal’: US sanctions lock International Criminal Court judge out of daily life

Canadian judge Kimberly Prost is unable to use credit cards, transfer money or book everyday services in what she calls an attack on the independence of the judiciary

The Irish Times

RE: https://mastodon.social/@gedeonm/116216540451476660

As someone who has followed @Iconfactory’s work since the classic Mac days — and who commissioned them to do a kick-ass app icon several years back — Happy Birthday to one of the greats!

🎉

Researchers Discover Major Security Gaps in LLM Guardrails https://www.infosecurity-magazine.com/news/major-security-gaps-llm-guardrails/
Researchers Discover Major Security Gaps in LLM Guardrails

Palo Alto Networks’ Unit 42 has developed a successful attack to bypass safety guardrails in popular generative AI tools

Infosecurity Magazine

🚨 OWASP Ottawa March 2026 Meetup - Featuring Garth Boyd! 🚨

OWASP Ottawa is excited to announce our March 2026 meetup featuring Garth Boyd present their talk “We know what you hide in JS: If it runs in the browser, it's public". The details are as follows:

📍 Location: 150 Louis-Pasteur Private, University of Ottawa, Room 117
📅 Date: March 18, 2026
⏰ Time: 6:00 PM EST - Arrival, networking, & pizza! 🍕
6:30 PM EST - Technical Talk

This session will focus on Garth going over some common and accidental assumptions made by software developers when writing JavaScript for modern applications, and how these mistakes can provide attackers with a variety of insights that can be leveraged to exploit vulnerabilities in a web application.

We will cover techniques and tools for performing comprehensive client-side JavaScript reconnaissance to uncover hidden endpoints, sensitive information, and potential security vulnerabilities.

Whether you’re a student, early-career professional, or seasoned practitioner looking to learn more about client-side security, come aboard and learn from experts!

We look forward to seeing you there in-person! If you cannot attend the event, you can watch the livestream on our YouTube channel.

🔗 : https://www.youtube.com/@OWASP_Ottawa

#OWASP #Ottawa #AppSec #Javascript #cybersecurity #networking