The Secure Soapbox

265 posts

The Secure Soapbox banner
The Secure Soapbox

The Secure Soapbox

@SecureSoapbox

Cyber Security advice, rants, and news. Just trying to get on a soapbox and say our 2 cents.

Tham gia Kasım 2024
226 Đang theo dõi47 Người theo dõi
Tweet ghim
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
Already almost Thanksgiving? Let's start thinking about 2025 from a potential attacker's perspective. See what we think is 3 areas attackers will pivot further towards next year in our debut article: securesoapbox.com/?p=20
English
0
0
2
221
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
Made a video recently that should be the last one you ever need to watch for learning Python. Tired of tons of influencers giving BS recommendations. youtube.com/watch?v=vhTP4_…
YouTube video
YouTube
English
0
0
0
32
Octoberfest7
Octoberfest7@Octoberfest73·
Hi I'm a red teamer working with Terraform, welcome to Jackass.
English
8
5
143
12.4K
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
Surely my posts get more than 1 like now
The Secure Soapbox tweet media
English
0
0
1
24
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
@lauriewired But it also does silly things like betraying trust by rendering PUNICODE domains (xn- and such) in a pretty friendly format. Target company is all letters that exist in Cyrillic? Easy target 😏
English
0
0
6
2.6K
LaurieWired
LaurieWired@lauriewired·
Your browser uses a psychological trick to prevent phishing attempts, and you (probably) never noticed. Look at your address bar. Notice the main domain is in black, and the rest is a much lighter grey. It's called the Salience Bias, and UI designers have used it for decades.
LaurieWired tweet media
English
24
74
1.3K
78.8K
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
@_RastaMouse But the payload generator had cool ASCII art and an ominous Latin phrase to come with it :(
English
0
0
9
271
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
@BowTiedCyber That portfolio should also be a mix of a blog or a GitHub. Nothing is nicer to see than when recruiting for there to be a few repos with some nice stuff on it. Literally anything shows effort and willingness to learn
English
0
0
4
481
BowTiedCyber | Evan Lutz
BowTiedCyber | Evan Lutz@BowTiedCyber·
The Cybersecurity Career Roadmap Certs: • Network+ • Security+ Skills: • Linux • Python • Traffic Analysis Strategy: • ePortfolio • 1 Page Resume • 1k Job Apps Do it right and you can get to $90k in 90 days. Not even an edge case. Happens all the time.
English
6
81
606
22.1K
vx-underground
vx-underground@vxunderground·
Hello, Some nerd messaged us saying their dog has spleen cancer and is asking for donations for medical care. Please consider donating to doggie. Also, note it is donation protected so if you think it's sketchy you can get a refund. gofundme.com/f/help-save-my…
English
15
39
344
22.5K
vx-underground
vx-underground@vxunderground·
Hi, we're on giveaway number ??? Thanks to @vxdb and 3kh0, we're giving away $220 worth of vx-underground merch (mini shopping spree?) - Winners will be selected randomly in the next 24 hours. - We will DM winners. - If you do not confirm your win in 24 hours a new winner will be selected - If your DMs are closed, you automatically forfeit your prize See subsequent tweet for merch store information
English
1K
75
836
52.7K
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
@IceSolst Like most of security the money is in the experts - tons of people are at the entrylevel bottleneck they'll give up before they progress Those that keep-on keepin'-on though will reap the rewards
English
2
0
3
588
solst/ICE of Astarte
solst/ICE of Astarte@IceSolst·
I know someone who submitted multiple $50k bugs to a triple-A MMO game, was basically making $200k a year for consecutive years from it. The secret: he had his own custom tooling to proxy the game’s communications and handle the custom protocol. Meanwhile the gaming company’s security team did not have anything similar. His write ups were also high quality: he put in a lot of effort to document exactly what went wrong and how, and included a lot of evidence + videos, which removed any doubt of the report being a false positive. Bug bounty can be lucrative, but it takes a LOT of effort.
English
14
29
458
44.4K
The Secure Soapbox đã retweet
Cyber and Chill
Cyber and Chill@cyberandchill·
This is your reminder that you should be studying for your next IT certification.
English
9
59
479
18.4K
The Secure Soapbox đã retweet
Carbon
Carbon@CogniCarbon·
Your first programming language shapes they way you solve problems. Really interesting read.
Carbon tweet media
English
487
1.3K
11.1K
1.2M
vx-underground
vx-underground@vxunderground·
We're absolutely cooked
vx-underground tweet mediavx-underground tweet mediavx-underground tweet mediavx-underground tweet media
English
171
418
3.5K
248.7K
The Secure Soapbox
The Secure Soapbox@SecureSoapbox·
If I see one more cyber security analyst that doesn't understand subnetting I'm gonna flip
English
0
0
1
19