Hot take: the cybersecurity industry wastes an incalculable amount of effort "remediating vulnerabilities" in code because a library used has some "vulnerability" that can't actually be exploited in the way it's used in the application.
Notices by Jake Williams (malwarejake@infosec.exchange)
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Thursday, 26-Dec-2024 23:41:50 JST Jake Williams -
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Wednesday, 25-Dec-2024 23:41:55 JST Jake Williams Find yourself someone who buys you a life size metal Sword of Omens from Thundercats for Christmas.
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Wednesday, 18-Dec-2024 17:44:21 JST Jake Williams Never, EVER, do anything that might create personal legal liability for yourself on behalf of your org.
No matter what anyone says, you are not "family." You are not "in this together." And most importantly they do NOT "have your back."
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Wednesday, 27-Nov-2024 20:38:47 JST Jake Williams Have been low key thinking about replacing a vehicle and decided yesterday to jump on it before prices soar due to tariffs. This is $50k I would have spent in mid-late 2025 that I'm spending now.
Got to wondering:
How many others are doing this?
How does this reflect in economic reporting? -
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Thursday, 12-Sep-2024 05:22:14 JST Jake Williams Publicly declaring "I will give you a child" to someone you have no consenting relationship with is a threat of sexual assault, full stop.
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Wednesday, 28-Aug-2024 00:09:23 JST Jake Williams My favorite thing about the Telegram arrest is that "normies" are asking me if this is why I've been refusing to use it for comms and moving them to Signal instead.
Yes. Yes it is...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Saturday, 10-Feb-2024 10:50:07 JST Jake Williams Management "helping" with the incident response...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Saturday, 27-Jan-2024 15:39:51 JST Jake Williams Big feels...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Tuesday, 23-Jan-2024 17:31:48 JST Jake Williams Misunderstanding threat actor capabilities...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Tuesday, 23-Jan-2024 08:49:56 JST Jake Williams Deploying honey tokens in the network to catch attackers...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Tuesday, 09-Jan-2024 02:21:01 JST Jake Williams CISOs: please stop asking "how will AI fix X"
If AI widely solved the problems you're delusionally thinking/hoping/praying it will, you wouldn't have to ask consultants about it. Your peers wouldn't be able to shut up about it. Thanks for coming to my TED Talk...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Thursday, 06-Jul-2023 03:23:02 JST Jake Williams Privilege escalation with Python...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Saturday, 13-May-2023 02:53:47 JST Jake Williams Threat actor disabling the EDR before deploying a destructive cyberattack...
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Tuesday, 11-Apr-2023 08:50:55 JST Jake Williams If you're considering using Gusto for HR outsourcing, just don't. I legit do not understand how these clowns stay in business. It's so bad, it would take something very special for me to even work at a company using Gusto for benefits administration again.
Congratulations Gusto - you've inspired me to add new questions to my interview process when looking for jobs "do you use Gusto?"
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Thursday, 02-Mar-2023 23:29:07 JST Jake Williams Narrator voice: "it was not, in fact, 13 seconds"
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Sunday, 26-Feb-2023 03:31:30 JST Jake Williams I'm not familiar with this definition of "universal"
-
Embed this notice
Jake Williams (malwarejake@infosec.exchange)'s status on Friday, 24-Feb-2023 22:14:56 JST Jake Williams Fantastic thread detailing how you may still have security issues even if you have removed your last Exchange hybrid management server.
https://twitter.com/JimSycurity/status/1628813019588313088?s=20