Emory L. · @emory
217 followers · 2141 posts · Server soc.kvet.ch
Bogomil Shopov - Бого · @bogo
402 followers · 524 posts · Server hapyyr.com

Лекцията ми от VarnaConf миналата година на тема моделиране на заплахи. Чак сега я намерих в тубата :)
youtube.com/watch?v=dEJlUu3Vlw

#varnaconf #threatmodeling #varna

Last updated 1 year ago

Emory L. · @emory
170 followers · 1687 posts · Server soc.kvet.ch

based on my most recently surfaced books in my or iPad i could really read the hell out of a book like " Your World with , , , , and and Love Your Journey" by Harvard Business Review

#Boox #decluttering #psychedelics #ai #PKM #threatmodeling #privacy #productivity

Last updated 1 year ago

Bogomil Shopov - Бого · @bogo
391 followers · 517 posts · Server hapyyr.com
Gary McGraw · @cigitalgem
509 followers · 914 posts · Server sigmoid.social

A link to the RECORDED for webinar I did yesterday with @adamshostack is now available behind a registration wall.

iriusrisk.com/impact-machine-l

#ml #threatmodeling #swsec #mlsec

Last updated 2 years ago

Gary McGraw · @cigitalgem
509 followers · 867 posts · Server sigmoid.social

WEBINAR THURSDAY 3.30

Threat Modeling and Machine Learning. Huh?

Or When with chatGPT replace Adam Shostack?

Reserve your spot today: iriusrisk.com/impact-machine-l

#mlsec #ml #machinelearning #threatmodeling

Last updated 2 years ago

Antti Vähä-Sipilä :donor: · @avs
308 followers · 208 posts · Server infosec.exchange

I listen to @Kugg 's and @nxsolle 's Säkerhetssnack, which is a Swedish language security podcast. Swedish being only my third language, sometimes it's a bit hard to follow, especially when it's less formal.

A great solution is to feed the audio into the model. What I saw at the end of the most recent episode on (fsecure.libsyn.com/om-hotmodul) was odd.The last spoken words in the recording are:

  • Twitterkontot finns kvar om ni vill ge oss feedback. ("Finns kvar" sounds to me like they're just about to ditch it for Mastodon, right?)

  • Annars så hörs vi nästa gång. - Hej då!

But Whisper goes on during the outro jingle:

  • Tack till elever och personal vid Säkerhetssäkerhetssäkerheten.se.

  • Undertextning.nu

  • [Svensktextning: Catarina Palmklint Iyuno-SDI Group för UR]

I first thought that this was some inaudible watermark that Whisper picked up, but then I realised that it's most probably an artifact of its training. Maybe it has been taught using an audio + subtitle corpus, and it has just learned that when Swedish people stop talking, you're supposed to add information about some humans who did the subtitle translation.

#openai #whisper #threatmodeling #machinelearning

Last updated 2 years ago

Will you be at the WiCyS conference this week?

I’ll be leading a workshop about threat modeling conferences with two other wonderful .

#wicys #cyber #leaders #infosec #conference #threatmodeling #wicys2023 #cybersecurity

Last updated 2 years ago

How can we assess in a reliable and precise way? Qualitative measures are not the best option. Quantitative measures, on the other hand, provide invaluable insights that lend themselves to practical use in Three Modern Quantiative Privacy Risk Models
enterprivacy.com/tools-resourc

#privacyrisk #privacybydesign #privacybydefault #dataprivacy #fair #nist #linddun #riskmodeling #threatmodeling #riskassessment #privacyresources

Last updated 2 years ago

Short Update on Gram - the webapp I've published some screenshots / details on here before.

I'm still working on getting it open sourced, trying to get the right permissions etc but also working on cleaning up the repo to make it good enough.

In the past month I've merged back the code-base so that our internal version is now based of the open source version. Meaning I can do most development in the OSS version and keep internal specific logic/deployment stuff etc in a separate repo that is internal.

It's still kind of a mess though. Tried setting up a typescript monorepo and it turned out kind of "meh". Will see if I can get some help structuring it better from some other engineers while I wait for permissions etc.

I will try to invite to a private beta asap, then when the structure is a bit cleaner and everything is better documented I'll make it public for everyone.

#threatmodeling

Last updated 2 years ago

Edbro · @edbro
29 followers · 229 posts · Server swecyb.com

@rmondello @adamshostack I’ve seen a great influx of discussions in the space. Now we just get to implement it and not just talk about it 😅

#threatmodeling #appsec

Last updated 2 years ago

"During one of the networking events, one person inquired about my methodology for threat modeling privacy, noting the new chapter in my book. I was excited to explain, but as I begun, this person expressed concern that the method “didn’t scale.” linkedin.com/pulse/invading-pr

#privacyrisk #threatmodeling #PrivacyEngineering #privacybydesign #privacybydefault

Last updated 2 years ago

"During one of the networking events, one person inquired about my methodology for threat modeling privacy, noting the new chapter in my book. I was excited to explain, but as I begun, this person expressed concern that the method “didn’t scale.” linkedin.com/pulse/invading-pr

#privacyrisk #threatmodeling #PrivacyEngineering #privacybydesign #privacybydefault

Last updated 2 years ago

Emory L. · @emory
137 followers · 728 posts · Server soc.kvet.ch

things have been a lot of fun at work lately and our team is hiring another security architect for our and secure design consult team.

you can ask me for a referral if you're interested, public link is jobs.comcast.com/jobs/descript

i didn't know i could be doing all the time until i met this team and our program is very mature, we've started privacy threat model workshops in late 2021. still time make it amazing with us!

#threatmodel #threatmodeling #infosec #jobs #security #securityarchitect

Last updated 2 years ago

Thank you @kimw for an excellent opening keynote at @owasp about threat modeling with a privacy lens

I appreciated the use of throughout!

#globalappsec #dublin #analogy #threatmodeling #infosec #privacy #owasp

Last updated 2 years ago

Gary McGraw · @cigitalgem
470 followers · 438 posts · Server sigmoid.social

Join
@cigitalgem
&
@adamshostack , two heavyweights of & , as they go head to head explaining and debating the future of and threat modeling.

hubs.li/Q01C5GDV0

#softwaresecurity #swsec #threatmodeling #machinelearning #mlsec

Last updated 2 years ago

During one of the networking events, one person inquired about my methodology for threat modeling privacy, noting the new chapter in my book. I was excited to explain, but as I begun, this person expressed concern that the method "didn’t scale.” lnkd.in/g28M6YGq

#privacyrisk #threatmodeling #PrivacyEngineering #privacybydesign #privacybydefault

Last updated 2 years ago

Misuse Case · @MisuseCase
51 followers · 443 posts · Server twit.social

Okay and especially folks, do any of you know of templates for the Microsoft Threat Modeling Tool that are good for modeling environments with:

- Sensitive regulated data like financial data etc.
- Both on-prem and cloud systems and applications, with cloud services from different vendors (so maybe brand-agnostic)
- Legacy systems (low priority, the first two are more important).

#cybersecurity #threatmodeling #pii #phi

Last updated 2 years ago

Dan Conn @ Open UK 7-8th Feb · @danjconn
735 followers · 362 posts · Server defcon.social

Wow! My first conference of 2023 and it's looking like a good one!

I hope you can catch my talk, 'Modelling Threats Out In The Open (Source)' at @openuk tomorrow at 4:30pm GMT on the Security Track

Head to stateofopencon.com/ to register!

#soocon23 #stateofopencon #threatmodeling #cybersecurity #infosec #opensource #appsec #applicationsecurity

Last updated 2 years ago

Threat modeling can be effectively integrated with DevOps practices to maximize value and shift-left security, as suggested by leading security experts. This topic was discussed in a recent post on Microsoft Security Blog. microsoft.com/en-us/security/b

#threatmodeling #devops #shiftleftsecurity

Last updated 2 years ago