30 Followers
154 Following
31 Posts

Time travelling foreign specop 😉

#Dogs #Sailing #Running #infosec #cybersecurity #pentest

Speaker, educator, hacker.

FCIIS, CSTL Assessor (Inf and App)

Technical Director @ sodiumcyber.com

Founder of #TigerScheme may it RIP
Founder of the #Cyberscheme 2013.

Former global head of infosec @blackberry
Former owner of Encription
Founder and trainer @merimetso

Generally unimpressed. Likes dogs and anything to do with sailing.

So now we have finally managed to start a movement away from Twitter - when are we going to take on LinkedIn?

If there is any platform worthy of being slaughtered it is LinkedIn - complete assholes, developed by complete assholes, gained market share through illegal processes (illegally accessing and spamming users contacts on their devices), their co-founder actively boasts about their illegal activities in his lectures at Stanford

I’m boldly going where I haven’t gone before, which is right here at this site. Apparently this is a “toot.” I would appreciate a follow!

@sean I tried using Debirdify this morning to import my birdsite follows to Mastodon -- pretty painless!

https://pruvisto.org/debirdify/

Debirdify

This is a web app that helps you find out which of the people you follow on Twitter are on Mastodon/in the Fediverse already and follow all of them easily.

Ok folks. Same rule. Please ultra-verify the information you share, especially during tense situations. If you're not sure, don't toot.

#Ukraine #Poland #verification #disinformation #misinformation

it costs $8 to log out now

I'm going to share a short story from the last fortnight about an interaction I had which really highlights just how awesome the #infosec industry can be.

A few weeks ago, I was conducting a pen test against a Government client at their premises. Now if you know UK Government, you'll know a lot of their kit can be old, and they often try to squeeze as much assurance work into the shortest timescale to save money . I was presented with 20 firewall configs to review which hadn't been communicated in the original scope (I was expecting 4). No problem though, lets make this happen.

My immediate problem was I had no tools at all that could parse these old (very large!) configs into something sensible without spending some time coding something up. So a quick search pointed me to an older tool that hasn't been maintained since 2017. #Wallparse. I grabbed the exe and installed it. It ingested every one of the configs for me, giving me a lovely visual representation and made the reviews very rapid by comparison to the alternatives I was facing that day. I had used a trial license at the time.

Impressed with it and its applicability to the job and wondering how to get a license as I am sure it will come in useful again, I contacted the admins from the email address on the 2017 website, not really expecting any response.

Well I did get one, and not the one I was expecting. James D contacted me with a 1 year license and asked for no money for it, rather that I donate to a charity supporting Ukraine, if I could, or at least offer a prayer.

It really touched me what James D had done, so I calculated what proportion of my fee would be for the hours I spent reviewing the firewalls and donated that, and a bit more, to Unicef this morning.

I don't know who James D is, or why they stopped developing their tool, but their generosity has truly made my month.

New season of Warrior Nun on Netflix. OMG.

An under rated rollercoaster of a show. Bring it.

Python infested
Took my dogs on a 12 mile ruck through the Wye valley today. I think they might be broken. Never seen them sleep so deeply 🤣🤣🐕🐕
Arghhhhh. Linux. So good, but such high maintenance if you're like me and mess about with things. Another rebuild tomorrow to try to shoehorn several coding platforms all running different dependencies, virtual machines, pen test tools et al. It will last 3 weeks before things start to break again. But I wouldn't do tech any other way.