Brett Winterford (@breditor) 's Twitter Profile
Brett Winterford

@breditor

InfoSec, tweeting and tooting when time allows. Dipping toes in mastodon at [email protected] - Founding (former) editor of SRSLY RISKY BIZ newsletter.

ID: 21064447

linkhttps://sec.okta.com calendar_today17-02-2009 04:36:58

8,8K Tweet

5,5K Takipçi

3,3K Takip Edilen

beth (@bethbourdon) 's Twitter Profile Photo

my daughter’s new pink iphone 15 was stolen at edc last month and she marked it as lost/stolen on icloud and filed an insurance claim with her carrier, who had her blacklist the phone. the scammers have started texting her now.

my daughter’s new pink iphone 15 was stolen at edc last month and she marked it as lost/stolen on icloud and filed an insurance claim with her carrier, who had her blacklist the phone. the scammers have started texting her now.
Brett Callow (@brettcallow) 's Twitter Profile Photo

Hit by #Alphv? Need a free decryptor to get your data back? The FBI has gift for you! #Ransomware #BlackCat justice.gov/opa/pr/justice…

Matt Johansen (@mattjay) 's Twitter Profile Photo

Every time I've been hiring recently, it's been for Senior roles, and I always get asked about more Junior opportunities. Well, that time has come, and we're looking for a Security Engineer at Reddit.

Moose (@litmoose) 's Twitter Profile Photo

With the damage I've seen done via SIM swaps, 5 years in prison is not enough. I said what I said. bleepingcomputer.com/news/security/…

Brett Winterford (@breditor) 's Twitter Profile Photo

We should expect more of these attacks as passkeys are (hopefully) more widely adopted: attacks on recovery flows shift to passkey providers. I recommend CISOs require device-bound credentials for access to sensitive apps.

Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

You might need to check your Teams Admin Center.. 😩 It looks like the defaults for 3rd party apps changed so users can now add over 2300 apps to Teams without requiring approval To change this, click Actions - Org-wide app settings, turn off 3rd party apps (more in next tweet)

You might need to check your Teams Admin Center.. 😩

It looks like the defaults for 3rd party apps changed so users can now add over 2300 apps to Teams without requiring approval

To change this, click Actions - Org-wide app settings, turn off 3rd party apps (more in next tweet)
Marc Rogers (@marcwrogers) 's Twitter Profile Photo

The OSS community is not responsible for how their code is used. Hobby and passion projects are not corporations, they generally aren’t even businesses and they certainly aren’t your employees.

Eric Geller (@ericgeller) 's Twitter Profile Photo

Scoop: Cybersecurity and Infrastructure Security Agency is asking software companies to sign a pledge committing them to implementing seven key "secure-by-design" goals. CISA plans to announce the pledge with ~50 signatories at RSA next week. Major test of efficacy of CISA's SBD campaign. wired.com/story/cisa-cyb…

Scoop: <a href="/CISAgov/">Cybersecurity and Infrastructure Security Agency</a> is asking software companies to sign a pledge committing them to implementing seven key "secure-by-design" goals.

CISA plans to announce the pledge with ~50 signatories at RSA next week.

Major test of efficacy of CISA's SBD campaign.

wired.com/story/cisa-cyb…
Nate Silver (@natesilver538) 's Twitter Profile Photo

New podcast dropping soon! I'm super excited to announce that I'm launching a show called Risky Business. Cohosted by me and Maria Konnikova (Maria Konnikova). First episode is May 16. You can learn more here: natesilver.net/p/announcing-r…

Okta (@okta) 's Twitter Profile Photo

Check out our very own CPO, @clcsampaio, being interviewed on Patrick Gray about Identity and Fine Grained Authorization! 🎧 Listen to the full episode here: bit.ly/4bQezhQ

Check out our very own CPO, @clcsampaio, being interviewed on <a href="/riskybusiness/">Patrick Gray</a> about Identity and Fine Grained Authorization! 

🎧 Listen to the full episode here: bit.ly/4bQezhQ
myGov (@mygovau) 's Twitter Profile Photo

We’ve introduced passkeys as a simple and secure option for people to sign in to their myGov account. Your account will be most secure when you create a passkey and turn off your password as a sign in option. To find out more watch this video, or visit: my.gov.au/passkeys