Infosecurity.US

Information Security & Occasional Forays Into Adjacent Realms

  • Web Log

USENIX Enigma 2017, David Molnar's 'As We May Code' →

September 24, 2017 by Marc Handelman in Conferences, Education, Information Security, All is Information, Code
September 24, 2017 /Marc Handelman
Conferences, Education, Information Security, All is Information, Code

Daniel Stori's 'What Your Code Looks Like' →

September 18, 2017 by Marc Handelman in Sarcasm, Code, Humor
September 18, 2017 /Marc Handelman
Sarcasm, Code, Humor

Esolang, Asciidots →

August 11, 2017 by Marc Handelman in Code, Python

via Motherboard writer Michael Byrne comes this escoteric language article describere esolang asciidots (ensconced, online version here). Todays Must Read.

August 11, 2017 /Marc Handelman
Code, Python

Daniel Stori's '$ Funtional World' →

August 07, 2017 by Marc Handelman in Code, Functional Programming, Sarcasm, Satire, Humor

Via the inimitable Daniel Stori at turnoff.us

August 07, 2017 /Marc Handelman
Code, Functional Programming, Sarcasm, Satire, Humor

Infosec Reactions' 'The Docker Security Model' →

August 05, 2017 by Marc Handelman in Code, Cloud Security, Code Review, Docker Security?, Information Security, Cyber Cyber Cyber Cyber

Via the excoratingly humorous mind of aloria. Enjoy,

August 05, 2017 /Marc Handelman
Code, Cloud Security, Code Review, Docker Security?, Information Security, Cyber Cyber Cyber Cyber

Shostack's 'Dope Cycle and a Deep Breath' →

August 01, 2017 by Marc Handelman in Code

Adam Shostack discusses the latest in anti-app-addiction... Today's MustRead!

August 01, 2017 /Marc Handelman
Code

BSides London 2017, Nick Smith's 'The State of Crypto APIs' →

July 30, 2017 by Marc Handelman in BSides, Conferences, Information Security, Code, Code Review, API
July 30, 2017 /Marc Handelman
BSides, Conferences, Information Security, Code, Code Review, API

BSides Cleveland 2017, Spencer McIntyre's 'The Python in the Apple' →

July 10, 2017 by Marc Handelman in BSides, Education, Code, Conferences, Information Security, Python
July 10, 2017 /Marc Handelman
BSides, Education, Code, Conferences, Information Security, Python

Daniel Stori's 'The Monolith Retirement' →

July 07, 2017 by Marc Handelman in Code, Microservices, Monolithic Systems, Monolithic Architecture

Superb.

July 07, 2017 /Marc Handelman
Code, Microservices, Monolithic Systems, Monolithic Architecture

Laugh It Up, Sport

Flush The Cruft

July 05, 2017 by Marc Handelman in Blatant Stupidity, Cruft, Code Review, Code, Information Security

Along with the latest downsizing, maybe, just maybe, they will clean the security cruft in their Cloud bits as well...

July 05, 2017 /Marc Handelman
Blatant Stupidity, Cruft, Code Review, Code, Information Security

BSides Cleveland 2017, Vince Salvino's 'Choose Django for Secure Web Development' →

July 05, 2017 by Marc Handelman in Conferences, Education, Information Security, Code
July 05, 2017 /Marc Handelman
Conferences, Education, Information Security, Code

Cartoon by Rudy Lacovara at Angry .Net Developer

Code Failure, Again →

June 29, 2017 by Marc Handelman in Incompetence, Code, Code Review, Blatant Stupidity, Application Security, Information Security

Meanwhile, in incompetent application security testing news, comes this astonishing example of blatant coding stupidity - Microsoft Corporation's (NasdaqGS: MSFT) crack team of questionable-capability-developers (have these people heard of fuzzers?) unleashed a deeply flawed Windows Defender product on millions of customers.

As luck would have it (if you believe in that sort of thing), the product was just patched months after the faulty codebase was wrapped-up-all-pretty-like. The flaw was discovered by security researcher Tavis Ormandy of Google Project Zero fame; his report (and closure of same) on 2017/06/23 is today's proof - at the very least - there are Security Researchers Doing The Right Thing.

June 29, 2017 /Marc Handelman
Incompetence, Code, Code Review, Blatant Stupidity, Application Security, Information Security

Daniel Stori's Python Private Methods →

June 15, 2017 by Marc Handelman in Code, Information Security, Sarcasm, Satire
June 15, 2017 /Marc Handelman
Code, Information Security, Sarcasm, Satire

BSides Nashville 2017, Ryan Goltry's 'Springtime for Code Reviews' →

May 17, 2017 by Marc Handelman in All is Information, BSides, Bugs, Code, Information Security, Code Review
May 17, 2017 /Marc Handelman
All is Information, BSides, Bugs, Code, Information Security, Code Review

BSides Nashville 2015, Ron Parker's 'Agile and Security Oil and Water' →

May 13, 2017 by Marc Handelman in All is Information, Code, Agile Development, Rugged DevOps, Rugged Security, DevSecOps, DevOps

Worth a repeat, should be a must watch for the DevOps and Agile 'teams' out there...

May 13, 2017 /Marc Handelman
All is Information, Code, Agile Development, Rugged DevOps, Rugged Security, DevSecOps, DevOps

XKCD, Code Quality →

May 05, 2017 by Marc Handelman in XKCD, Code, Sarcasm

via the inimitable Randall Munroe at XKCD.

May 05, 2017 /Marc Handelman
XKCD, Code, Sarcasm

XKCD, Existential Bug Reports →

April 11, 2017 by Marc Handelman in All is Information, Code, Humor, Sarcasm, XKCD

Similar to (but not the same as...) the moth in Hopper's printed code; via the eponymous Randall Munroe, operating at XKCD.

April 11, 2017 /Marc Handelman
All is Information, Code, Humor, Sarcasm, XKCD

Bsides Tampa 2017, Brian Beaudry's 'Intro to Fuzzing for Fun and Profit' →

March 24, 2017 by Marc Handelman in All is Information, Conferences, Information Security, Secure Coding, Code, Fuzzing, Security Testing
March 24, 2017 /Marc Handelman
All is Information, Conferences, Information Security, Secure Coding, Code, Fuzzing, Security Testing

Shmoocon 2017, Patrick Biernat's - ripr Run Slices of Binary Code from Python →

February 16, 2017 by Marc Handelman in All is Information, Conferences, Code, Infosec Coding, Education
February 16, 2017 /Marc Handelman
All is Information, Conferences, Code, Infosec Coding, Education

BSides Lisbon 2016, Bárbara Vieira's 'Challenges of Secure Coding' →

December 02, 2016 by Marc Handelman in All is Information, BSides, Code, Conferences, Education, Information Security, Secure Coding
December 02, 2016 /Marc Handelman
All is Information, BSides, Code, Conferences, Education, Information Security, Secure Coding
  • Newer
  • Older