GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Josh Bressers (joshbressers@infosec.exchange)'s status on Friday, 22-Nov-2024 02:29:20 JST Josh Bressers Josh Bressers

    The most effective security efforts are lists of vulnerabilities that minimally change every time they are updated

    This was meant to be a joke, but then I realized it's also true

    In conversation about 7 months ago from infosec.exchange permalink
    • Embed this notice
      Darakian (darakian@fosstodon.org)'s status on Friday, 22-Nov-2024 08:31:29 JST Darakian Darakian
      in reply to

      @joshbressers What's your criteria for "effectiveness"? 👀

      In conversation about 7 months ago permalink
    • Embed this notice
      Josh Bressers (joshbressers@infosec.exchange)'s status on Friday, 22-Nov-2024 08:31:29 JST Josh Bressers Josh Bressers
      in reply to
      • Darakian

      @darakian

      The two obvious lists that get the most attention are the OWASP Top Ten and this new list from MITRE

      Then when I realized they probably ARE the most effective lists around, it made me sad

      In conversation about 7 months ago permalink
    • Embed this notice
      Josh Bressers (joshbressers@infosec.exchange)'s status on Friday, 22-Nov-2024 08:37:42 JST Josh Bressers Josh Bressers
      in reply to
      • Darakian

      @darakian

      In the case of any list, if you're actually doing it right, things should be dropping off the list

      I'm not sure anything has ever really come off any security list because an effort was made to get rid of it

      Maybe if CISAs push to stop using memory unsafe languages, in 200 years, we can remove buffer overflows :P

      In conversation about 7 months ago permalink
    • Embed this notice
      Darakian (darakian@fosstodon.org)'s status on Friday, 22-Nov-2024 08:37:43 JST Darakian Darakian
      in reply to

      @joshbressers I sorta meant more "how do you measure it?". Even if "measure" is hand wavy

      In conversation about 7 months ago permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.