Mike Wooldridge 

51 Followers
93 Following
113 Posts
Tech geek looking after the cloud infrastructure for a railway ticketing company & Cybersec Masters degree student at the Open University
Study athttps://ou.ac.uk
Admin athttps://railforums.co.uk
What five or six things would you recommend the average non-tech specialist, busy, cash-strapped small business do to improve its security? Rough order of importance.
Boosts appreciated!

If your $dayjob is at all related to security, I'd love to hear from you about what type of mobile phone you currently rely on.

I've never really seen a data-based breakdown of the answer to this question, and I'm genuinely curious. Thanks!

p.s. if you vote, please also boost this poll!

iPhone
53.7%
Google Pixel
21.4%
Samsung
10.4%
Other Android
14.5%
Poll ended at .
Chilling by the pool on holiday in Tenerife reading Four Internets by Wendy Hall / Kieron O’Hara - such a good outlook on the politics of the internet past, present and (predicted) future.

I made a Burp extension! Are you tired of manually copying request headers from Burp, formatting them like

-H 'User-Agent:Something'

and pasting them into your command to use them with cURL, Gobuster, Wfuzz, fuff, Feroxbuster etc.?

I sure was. So I made this:
https://github.com/n0kovo/burp-copy-headers-as-args

You're welcome ❀️

#burpsuite #pentest #pentesting #bugbountytips #bugbounty #foss #appsec #hacking #tools #infosec #redteam #redteaming #PentestingTools #fuzzing #bapp

GitHub - n0kovo/burp-copy-headers-as-args: Copy request headers in -H format (cURL, Wfuzz, Gobuster etc.)

Copy request headers in -H format (cURL, Wfuzz, Gobuster etc.) - GitHub - n0kovo/burp-copy-headers-as-args: Copy request headers in -H format (cURL, Wfuzz, Gobuster etc.)

GitHub

The birdsite is breaking in all sorts of ways today... if it wasn't for the fact there's a subset of interesting people who haven't made the jump (yet!), I think that might have pushed me to deactivate entirely, but it's certainly made me post more thoughts here instead!

In any case, apologies if I post the occasional non-cybersec (probably UK rail-related) thought here as I wean myself away from a site that's been my main way of sharing pictures/videos of trips for over a decade now....

@mikewooldridge Yes - education and helping ensure that your assessment of your threat model is up to date is a good thing. But we can do that without castigating people who are thinking about starting the journey or who don't face idiosyncratic risk.
πŸ˜…
TWITTER USERS LOOKING TO MIGRATE: The Mastodon app is a bit rubbish. That's a barrier for me.
TWITTER: Don't worry! We'll screw over our own 3rd party devs, so they jump ship and build better ones!
Just installed @ivory from @tapbots - loving it already, well worth the price and will definitely be continuing after the free trial! One suggestion - some of the icons aren’t immediately obvious to me what they do, perhaps a long press to show a label might work?