
woodspeed
@wucpi
2019 Jenkins Security MVP |
CAWASP, CARTP, CRT, OSCP, eWPT, eWPTX, eMAPT |
Views and opinions are my own.
ID: 334253995
http://www.blackwombat.com 12-07-2011 20:20:18
10,10K Tweet
423 Takipçi
944 Takip Edilen






🛠️ zizmor A tool for finding security issues in GitHub Actions CI/CD setups Detects template injections, impostor commits, credential leaks, etc. See src/audit for the check implementations. By Trail of Bits' @8x5clPW2 github.com/woodruffw/zizm…

⛓️ Attestations: A new generation of signatures on PyPI Overview of PyPI's new index-hosted digital attestations, which is enabled by default for packages published to PyPI using Trusted Publishing, automatically providing build provenance By Trail of Bits

Dr. Nestori Syynimaa is showcasing token based authentication attacks, breaking down what to steal from the user's endpoint.










📢ANNOUNCEMENT📢⏳2 months to go! BSidesBUD of Security BSides brings top-tier cybersecurity minds to the stage—don’t miss out! 🔥 🎟 Early bird tickets are still up for grabs! Secure your spot! bsidesbud.com #BSidesBUD2025 #Cybersec #Infosec #securityBSides


New video: 1 hour of Conditional Access design deep dive. I always get asked to share Conditional Access templates, so I roped Nate Hutchinson into the first of a few long forms on thinking about robust, scalable, and customizable CA architecture. Watch: youtube.com/watch?v=NSqfUZ…


