Omer Cohen
1.3K posts


So is this recent vulnerability in Grafana (CVE-2023-3128) related to the "nOAuth" misconfiguration reported by @descopeinc? (descope.com/blog/post/noau…)
Grafana@grafana
Today we are releasing Grafana 10.0.1, 9.5.5, 9.4.13, 9.3.16, 9.2.20, and 8.5.27, which include a critical security fix. If you are affected, we recommend that you install newly released versions. grafana.com/blog/2023/06/2…
English
Omer Cohen retweetet
Omer Cohen retweetet

In the disclosure blog below, @omercnet goes into the details of:
✔ How nOAuth works
✔ How we helped fix many vulnerable apps (including fellow authentication providers)
✔ How you can check if your app is vulnerable to nOAuth
descope.com/blog/post/noau…
English

@rejektsio hi there! site says CFP opens Feb 6 but looks like it's still closed, can you confirm?
English
Omer Cohen retweetet

123... and just like that, we are public beta - lnkd.in/gXbS-uuW! Amazing teamwork across the board. We would love to hear feedback from every builder out there. Call out to all the startup founders/engineers/product managers - please try the produ…lnkd.in/g22Fn5gm
English
Omer Cohen retweetet

Another sprint ends
Though Friday brings big relief
New bugs lie ahead
To any #developers reading this haiku - congrats on making it through the week! Hope you’re ready to do it all over again in a few days.
pic credit: @omercnet
#descopers

English

Georgia 🇬🇪 makes it 46 countries so far!
#mytravelmap
mytravelmap.xyz/compare/u54207…
English
Omer Cohen retweetet

kill -9 pa$$w0rds
Sorry, we thought this was a terminal instead of a Twitter feed.
Anyway, hello from Descope! We’re building something in the authentication space for developers and can’t wait to share it with you.
Visit our site if you’re curious: descope.com
GIF
English

@gadievron I second regex101.com
You can also just gimmie a call for a 5 minute intro
English

@jonklinger אם הם עברו למנוי שנתי כנראה שהם רוצים להעביר גם אותך למודל הזה. הם קיוו שבכסף שהחזירו לך תשתמש לקנות מנוי חדש.
אגב בלי קשר לא הייתי קונה היום רישיון לתוכנה שלא כולל לפחות עידכוני אבטחה
עברית
Omer Cohen retweetet

All @SecurityBSides organizers around the world - make sure to check out the message from BSides Global on the organizer mailing list in preparation for our next phase of growth.
Please RT for visibility...
Thanks!
English











