Category: Mix

Bug Bytes #217 – How to Submit Vulnerabilities, Writing a Great WriteUp and 2 years of Bug Bounty
22
Nov
2023

Bug Bytes #217 – How to Submit Vulnerabilities, Writing a Great WriteUp and 2 years of Bug Bounty

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by…

Unpacking the Zimbra Cross-Site Scripting Vulnerability (CVE-2023-37580)
21
Nov
2023

Unpacking the Zimbra Cross-Site Scripting Vulnerability (CVE-2023-37580)

Insights and Protections On November 16, 2023, a significant security concern was published by Google’s Threat Analysis Group (TAG). They…

OpenAI Coup Theory, SEC vs. SolarWinds Analysis, Deepfake D&D Summaries
20
Nov
2023

OpenAI Coup Theory, SEC vs. SolarWinds Analysis, Deepfake D&D Summaries

Unsupervised Learning is a Security, AI, and Meaning-focused podcast that looks at how best to thrive as humans in a…

Sam Altman Wants AGI as Fast as Possible, and He Has Powerful Opposition
20
Nov
2023

Sam Altman Wants AGI as Fast as Possible, and He Has Powerful Opposition

A lot of people are asking for my thoughts on what happened at OpenAI this weekend. As I’ll explain below,…

SEC vs. SolarWinds is Cybersecurity's ENRON Moment
20
Nov
2023

SEC vs. SolarWinds is Cybersecurity’s ENRON Moment

Then the industry grows up and processes start to take over. And within a few decades it’s more the process…

How to Permanently Remove Your Fear of Public Speaking
17
Nov
2023

How to Permanently Remove Your Fear of Public Speaking

After a number of requests, here’s the follow-up to my recent post about lowering your heart rate before giving a…

Hackerone logo
16
Nov
2023

How to Fortify Your Assets & Maintain Compliance

Stepped-up SEC Enforcement Makes Proactive Security a Must The SEC’s finalized cybersecurity rules, effective starting mid-December 2023, place a spotlight…

[tl;dr sec] #208 - Cybersecurity GPT Agents, Supply Chain Security, Kubernetes Pentest Image
16
Nov
2023

[tl;dr sec] #208 – Cybersecurity GPT Agents, Supply Chain Security, Kubernetes Pentest Image

I hope you’ve been doing well! (Expect more details about my travel jaunts next week, this week I miscalculated timezones…

Hackerone logo
15
Nov
2023

How Human Security Testing Helps the U.S. Government’s Zero Trust Mandate

One major reason for the progress is a May 2021 Executive Order that pushes federal agencies to speedily embrace the…

Hackerone logo
15
Nov
2023

Cyber Regulations Can Make Our Nation Safer

While a largely voluntary approach to critical infrastructure cybersecurity has led to some improvements, a general lack of mandatory requirements…

Decoding the HackerOne Code of Conduct
15
Nov
2023

HackerOne Responds To The Review of The UK’s Computer Misuse Act (CMA)

By Ilona Cohen, Chief Policy Officer, and Michael Woolslayer, Policy Counsel The U.K. is in the midst of a multi-year…

FDA's New Cybersecurity Requirements: Are You Prepared as a Medical Device Manufacturer?
15
Nov
2023

FDA’s New Cybersecurity Requirements: Are You Prepared as a Medical Device Manufacturer?

Where To Begin? Companies submitting products for FDA approval must do the following: Provide details of their process to monitor,…