1️⃣ My S-Q-L (ess-queue-el?)
2️⃣ My Sequel
3️⃣ My-STFU
4️⃣ I don't care
〠| HackHerWay Cybersecurity | https://hackherway.blogger.com |
| My GitHub | https://GitHub.com/d0midigi |
| X-Twitter | https://twitter.com/@d0midigi |
| Cyberhome | https://mindhackdiva.tech |

Someone just pinged me about my thoughts for 2023, and what to expect.
My answer was simple.
Same as 2022, just more painful.
☑️Here's the logic.
UNTIL y'all can actually EFFECT change on something as simple as the OWASP Top 10 then nothing's going to change.
For the last 5-6 years that basic TEN things has hardly changed.
For 20 years we've had SQL injection FFS...
So, you want predictions for '23.
More of the same until people take a step BACK, fix the basics, take care of the simple stuff, roll up the sleeves, take care of assets, patching, educating humans, and BASIC backups, etc.
Oh, and sorry, simple shit doesn't get you on the front cover of CISO magazine, or headlining conferences...
STOP chasing the easy button it does NOT exist‼️
‼️STOP with the blinky baubles and crap
‼️STOP with the vendor lunches
‼️STOP being blinded by bullshit
‼️STOP with the "it's not my area"
PICK up a bloody pencil, go count your assets and start there.
Oh, and GO TALK TO the developers, network teams, IT folks, and stop sitting in your ivory towers and quit pretending to be a “progressive, proactive cybersecurity specialist” when you ain’t about shit putting forth your 💯 into the game and actually doing it right.
It's NOT hard, y'all just don't want to do it.
That is all for now. 👩🏻⚖️
2023: Predictions.
Someone just pinged me about my thoughts for 2023, and what to expect.
My answer was simple.
Same as 2022, just more painful.
☑️Here's the logic.
UNTIL y'all can actually EFFECT change on something as simple as the OWASP Top 10 then nothing's going to change.
For the last 5-6 years that basic TEN things has hardly changed.
For 20 years we've had SQL injection FFS...
So, you want predictions for '23.
More of the same until people take a step BACK, fix the basics, take care of the simple stuff, roll up the sleeves, take care of assets, patching, educating humans, and BASIC backups, etc.
Oh, and sorry, simple shit doesn't get you on the front cover of CISO magazine, or headlining conferences...
STOP chasing the easy button it does NOT exist‼️
‼️STOP with the blinky baubles and crap
‼️STOP with the vendor lunches
‼️STOP being blinded by bullshit
‼️STOP with the "it's not my area"
PICK up a bloody pencil, go count your assets and start there.
Oh, and GO TALK TO the developers, network teams, IT folks, and stop sitting in your ivory towers and quit pretending to be a “progressive, proactive cybersecurity specialist” when you ain’t about shit putting forth your 💯 into the game and actually doing it right.
It's NOT hard, y'all just don't want to do it.
That is all for now. 👩🏻⚖️