11 Followers
125 Following
10 Posts
@evacide
Appreciated.

@evacide
When looking for appropriate effective advice, I can't seem to find it. Balance is off between efficacy and straightforwardness. Making advice too technical or pretty general.

Keen for good resources that have been distilled for general audiences. It's a sea of sludge out there.

mr.w0bb1t 🌐 on Twitter

“IBM slide, 1979 ..”

Twitter
@flagranterror @bcrypt agreed. Can throw false positives if the criterion does not exist but is for default behaviour. Also if there is alternative security controls like 3rd party security software. But it is pretty darn good at what it is built to do. Well worth it.
@bcrypt not sure if something like https://learn.cisecurity.org/cis-cat-lite is useful. It checks against CIS benchmarks.
CIS-CAT Lite

CIS-CAT Lite is the free assessment tool developed by the CIS (Center for Internet Security, Inc.). CIS-CAT Lite helps users implement secure configurations for multiple technologies.

@dave_aitel @withzombies

Choosing a convention that has lots of source material but is not really searched could be good. Mix in a prefix like APT. I vote for colours.

APT-BurntSteel

@Torgo @dave_aitel

There are only two hard things in Computer Science: cache invalidation and naming things.

-- Phil Karlton

@ohCoz It is a good source, there are lots of good sources out there. I was looking for stuff that had research and janky fun. Like tmpout.sh, pagedout.institute, or phrack.org. Or PoC||GTFO books.
@ssiekmann I was looking at this today. Thanks.
Most hacker zines I have seen over the last 2 years got about 2 publications and then stopped. Others have stagnated. Are there any that have continued publications? Or has a lot of this activity moved to talks and Blogs?