Lee

15.2K posts

Lee banner
Lee

Lee

@lee_newcombe

Infosec, Cloud, Digital, Zero Trust, Politics, Snark. Author. PhD. Taekwondo 3rd Dan. Quietly non-conformist. Views my own.

Katılım Ocak 2012
314 Takip Edilen503 Takipçiler
Lee retweetledi
argp
argp@_argp·
"Smashing the stack for fun and profit" by @aleph_one anniversary -- 8 Nov 1996! jmp offset-to-call pop ... call offset-to-pop "/bin/sh" phrack.org/issues/49/14.h…
English
0
37
103
13.5K
Lee
Lee@lee_newcombe·
A rather unfortunate parallel with the Brexit vote is seeing the sudden upturn in interest amongst US voters in how tariffs work in practice... after the fact.
English
0
0
0
38
Lee retweetledi
Chris Wysopal
Chris Wysopal@WeldPond·
You can't get security from an LLM. Secure isn't the average of the input training data. Unfortunately security is an edge condition.
English
5
12
57
4.4K
Lee retweetledi
Katie🌻Moussouris (she/her/she-ra/she-hulk) 🪷
Anybody fretting about the Okta 52 character username vulnerability, I present the Xbox spacebar attack that minted the youngest hacker ever recognized by a major company for finding a serious security hole. He was 5 & wanted to play forbidden games. cnn.com/2014/04/04/tec…
English
3
46
168
23.9K
Lee retweetledi
Sophos X-Ops
Sophos X-Ops@SophosXOps·
For 5 years, Sophos has been engaged in defensive and counter-offensive operations against China-based #NationState adversaries targeting perimeter devices like #firewalls for surveillance and sabotage.
English
3
60
200
32.5K
Lee retweetledi
Dave Kennedy
Dave Kennedy@HackingDave·
😬😬😬😬 “Microsoft has notified customers that it’s missing more than two weeks of security logs for some of its cloud products, leaving network defenders without critical data for detecting possible intrusions.” techcrunch.com/2024/10/17/mic…
English
45
171
705
85.7K
Lee retweetledi
Chris Wysopal
Chris Wysopal@WeldPond·
Software liability comes to the EU. The new EU liability law extends the definition of “defective products” to include software, holding manufacturers accountable for harm caused by software vulnerabilities. If a software flaw leads to damage, manufacturers can now be held liable, emphasizing the importance of security throughout the product lifecycle. This change encourages companies to prioritize cybersecurity measures and regular updates to protect consumers, shifting some risk from users to software providers. The law also allows easier access to evidence in legal claims, balancing the power dynamics between consumers and manufacturers. There is a carve out for open source software. Importers and the EU representatives of foreign software can be held liable too.
English
7
55
104
17.8K
Lee retweetledi
Ellen Milligan
Ellen Milligan@EllenAMilligan·
New: UK ministers have been informed of widespread + likely successful efforts by Chinese state actors to compromise Britain's critical infrastructure networks, underscoring its vulnerabilities to cyberattacks by foreign powers w/@alexwickham @jamietarabay bloomberg.com/news/articles/…
English
8
88
141
114.1K
Lee retweetledi
Matt Johansen
Matt Johansen@mattjay·
New series of Palo Alto Networks vulnerabilities, chained together for a bad time. “We find that a simple request to that exact endpoint over the web service resets the admin password.” Well, I don’t like the sound of that… 🧵
Matt Johansen tweet media
English
24
290
1.6K
170.8K
Lee retweetledi
Rory Sutherland
Rory Sutherland@rorysutherland·
Superb quotation. Richie Benaud: "Succesful captaincy in cricket is 10% Talent and 90% Luck. But don't try it without the 10%."
English
13
25
262
27.5K