
Shawn Waldman
458 posts

Shawn Waldman
@cyberwaldman
CEO of Secure Cyber Defense LLC, weather and aviation geek. Founder | Keynote Speaker | Thought Leader. My tweets are my own.





"I've been working in cybersecurity for 3 years and I feel great!" - Dave, 24





The Space Shuttle Challenger gave us all PTSD. We watched it blow up during class and then went on with our day, no counseling, no trauma response. We were expected to carry on so we did. No wonder we're tough and DGAF.









An Iranian app for tracking Muslim prayer times has been hacked. Messages are encouraging armed forces to defect and “protect your compatriots. They will protect you in return.” Another message says, “Help has arrived.” Another, “It’s the time for reckoning.” Via @Vahid

Just found out we're being audited by our cyber insurance provider. They want to verify we actually have all the security controls we claimed we have. Problem: we don't have all the security controls we claimed we have. When we applied for the insurance, the application asked if we had multi-factor authentication on all admin accounts. I checked "yes" because we were planning to implement it. We never implemented it. Now the auditor wants to see our MFA logs.I have 48 hours to either: 1. Admit we lied and probably lose our coverage 2. Implement MFA across the entire company in two days 3. Get creative I'm going with option 3.I just enabled MFA on every admin account. Forced enrollment. Everyone had to set it up in the last hour. Then I backdated our MFA implementation logs to show it was enabled six months ago. Is this fraud? Technically maybe. But the security is actually in place now. We're just adjusting the timeline of when we claim we did it. The auditor comes on Monday. By then we'll have 48 hours of MFA logs that I'll present as "recent activity" from our "six-month implementation." Did we lie on the application? Yes. Are we fixing it before anyone finds out? Also yes. Corporate compliance is just staying one step ahead of getting caught.



holy sh*t. this is hands down the coolest website i have ever found in my life. it's a live feed of the freaking Hubble Telescope AND James Webb Space Telescope. and the resolution is honestly so incredible i didn't think it was real. unbelievable. spacetelescopelive.org




