A-a-ron Guzman (@scriptingxss) 's Twitter Profile
A-a-ron Guzman

@scriptingxss

@OWASP #IoT & #EmbeddedAppSec Project leader | Co-Chair: @CloudSA IoTWG | Author & Tech Reviewer| 🍕 Security Leader @Cisco

ID: 2260739730

calendar_today24-12-2013 21:54:10

1,1K Tweet

2,2K Takipçi

2,2K Takip Edilen

Clint Gibler (@clintgibler) 's Twitter Profile Photo

🦀 Memory Safe Languages in Android 13 To date, 0 memory safety vulns in Android’s Rust code Historical vulnerability density is >1/kLOC in C/C++ components → Rust has already prevented 100s of vulns By Jeff Vander Stoep security.googleblog.com/2022/12/memory…

🦀 Memory Safe Languages in Android 13

To date, 0 memory safety vulns in Android’s Rust code

Historical vulnerability density is >1/kLOC in C/C++ components → Rust has already prevented 100s of vulns

By <a href="/jeffvanderstoep/">Jeff Vander Stoep</a>

security.googleblog.com/2022/12/memory…
Clint Gibler (@clintgibler) 's Twitter Profile Photo

✅ How to *actually* roll out YubiKeys/WebAuthN Industry advice is to "just do it" But it's actually really hard in practice 8 resources on lessons learned from companies who've done it 🧵

Daniel Kelley (@danielmakelley) 's Twitter Profile Photo

30 cybersecurity search engines for researchers: 1. Dehashed—View leaked credentials. 2. SecurityTrails—Extensive DNS data. 3. DorkSearch—Really fast Google dorking. 4. ExploitDB—Archive of various exploits. 5. ZoomEye—Gather information about targets.

Clint Gibler (@clintgibler) 's Twitter Profile Photo

🗒️ @OWASP Kubernetes Top 10 Broken down into 3 categories in order of likelihood: 1️⃣ Misconfigurations 2️⃣ Lack of visibility 3️⃣ Vulnerability management Risks, mitigations, and lots of relevant tools By Sysdig sysdig.com/blog/top-owasp…

🗒️ @OWASP Kubernetes Top 10

Broken down into 3 categories in order of likelihood:
1️⃣  Misconfigurations
2️⃣ Lack of visibility
3️⃣ Vulnerability management

Risks, mitigations, and lots of relevant tools

By <a href="/sysdig/">Sysdig</a>

sysdig.com/blog/top-owasp…
Clint Gibler (@clintgibler) 's Twitter Profile Photo

📖 Penetration Testing Findings Repository A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that may be discovered during a penetration test By Cybersecurity and Infrastructure Security Agency #cybersecurity github.com/cisagov/pen-te…

Haral Tsitsivas 🇺🇸🦅🇬🇷🇺🇦 haral.bsky.social (@haral) 's Twitter Profile Photo

Aaron Guzman's insightful talk helps us discover OWASP's IoT Security Testing Guide for effective penetration tests and dive into robust methodologies and tools. #PlanetCyberSec #AppSecSoCal #AppSec #infosec #IoTSecurity A-a-ron Guzman

Aaron Guzman's insightful talk helps us discover OWASP's IoT Security Testing Guide for effective penetration tests and dive into robust methodologies and tools. #PlanetCyberSec #AppSecSoCal #AppSec #infosec 

#IoTSecurity
<a href="/scriptingxss/">A-a-ron Guzman</a>
Layer 8 Masters (@layer8masters) 's Twitter Profile Photo

Strengthen Enterprise Security Through Collaboration at Planet Cyber Sec AppSec SoCal! Join Omar Minawi, A-a-ron Guzman, Shelby Pace and Natalya Krecker for "How to Win Friends and Influence Trust: Reducing API AuthZ Risks Through Collaborative Defenses." Discover: - Power of

Strengthen Enterprise Security Through Collaboration at Planet Cyber Sec AppSec SoCal!

Join Omar Minawi, <a href="/scriptingxss/">A-a-ron Guzman</a>, Shelby Pace and Natalya Krecker for "How to Win Friends and Influence Trust: Reducing API AuthZ Risks Through Collaborative Defenses."

Discover:
- Power of
A-a-ron Guzman (@scriptingxss) 's Twitter Profile Photo

Presented at OWASP® Foundation Global SF this week on the IoT security testing guide (ISTG) project released earlier this year 👏 it was awesome to connect with old friends and learn of their perspectives for the future. Amazing event! 🤩

Presented at <a href="/owasp/">OWASP® Foundation</a> Global SF this week on the IoT security testing guide (ISTG) project released earlier this year 👏 it was awesome to connect with old friends and learn of their perspectives for the future. Amazing event! 🤩
Bug Bounty Village (@bugbountydefcon) 's Twitter Profile Photo

We’re excited to announce that Aaron Guzman (A-a-ron Guzman) will be speaking at the Bug Bounty Village at DEF CON 33! Stay tuned for more details on their talk, you won’t want to miss it. #BugBounty #DEFCON #BBV #BugBountyVillage

Bug Bounty Village (@bugbountydefcon) 's Twitter Profile Photo

Don't miss "To Pay or Not to Pay? The Battle Between Bug Bounty & Vulnerability Disclosure Programs" by Aaron Guzman (A-a-ron Guzman) on Friday, August 8 at 04:00 PM inside the Village. Read more at bugbountydefcon.com/agenda #BugBounty #DEFCON33

A-a-ron Guzman (@scriptingxss) 's Twitter Profile Photo

Excited to share the bounty & VDP evolution story with a sneak peek into the massive opportunities we're cooking up for our researcher community 🧑‍🍳 Real program data, real researcher, & business impacting outcomes🚀 we’re running a WiFi 7 program now🛜 #DEFCON #bugbountyvillage