This week #OpenSourceSecurity chat with Marc Boorshtein. we chat about what modern day Single Sign-On (SSO) looks like. Everyone likes to talk about zero trust, but how does that work? Marc gives us some good real world advice for how we should be adding authentication to our apps and services
https://opensourcesecurity.io/2025/2025-02-modern_day_authentication_with_marc_boorshtein/
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
The mascot of 2025 should be the mean little dog thing from Star Trek
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
This scene from Pirates of Silicon Valley feels very relevant right now
https://youtu.be/CBri-xgYvHQ?si=Mp4ODjJlwl--Nvhh&t=79
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
You're gonna need to buckleup for this @CypherCon #HackerHistory episode with @andreasdotorg
The story starts with East German hacker groups, then East and West German hacker groups, CCC, and more. It's an amazing and emotional story everyone should give a listen
https://hackerhistory.com/podcast/the-history-of-ela/
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
The Node.js project just issued CVE IDs for 3 EOL versions
Is this a good idea or a bad idea? It depends who you ask
It's a weird discussion to follow, so I broke it down in a way that should offend all the involved parties
https://opensourcesecurity.io/2025/01-cve-for-end-of-life/
=> More informations about this toot | View the thread
Every time I read about the existing AI companies complaining about deepseek, I keep envisioning this image in my brain
=> More informations about this toot | View the thread
On this episode of #OpenSourceSecurity I chat with Richard (Dick) Brooks about government security requirements.
There's a lot up in the air right now, and at the moment it doesn't seem like it's going to drastically affect open source developers, but it will certainly affect many of us in our day jobs.
Dick has a lot of insight into what exists today and what's coming next
https://opensourcesecurity.io/2025/01-government_security_requirements_with_dick_brooks/
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> More informations about this toot | View the thread
=> This profile without reblog | Go to joshbressers@infosec.exchange account This content has been proxied by September (3851b).Proxy Information
text/gemini