GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Mike Sheward (secureowl@infosec.exchange), page 3

  1. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Monday, 02-Dec-2024 13:17:55 JST Mike Sheward Mike Sheward

    Thinking of entering Rosie in the National Dog Show next year

    #dogsofmastodon

    In conversation about 7 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/580/668/529/580/697/original/4bd6604fbbf0759b.jpg
  2. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Tuesday, 12-Nov-2024 23:27:05 JST Mike Sheward Mike Sheward

    “Have we been able to able to contact London?”

    “Negative, Commander. All of our primary and backup channels remain down. We have also been unable to make contact with any other British submarines.”

    “It’s been four days, now. I think it’s time. It’s safe to assume something catastrophic has occurred.”

    The commander looked solemnly toward another senior member of the crew.

    “Fetch the letter.” He said.

    “Absolutely, sir.” The officer said, moving out of the submarine’s control room.

    “You see,” the commander said, addressing the remaining crew. “Every Prime Minister prepares letters of last resort for British Submarines. It contains instructions on what we should do in the event that the government has fallen and we cannot make contact with them. No one has ever opened one of these letters, let alone had to follow the instructions.”

    The senior officer returned with a sealed envelope, and handed it to the commander. The commander proceeded to open the envelope. He took out a folded piece of paper and paused.

    “We are a family aboard this submarine, and we may be all we have left for one another. For that reason, I will read this aloud, so we all know the plan at the same time.”

    He unfolded the paper.

    “Here goes,” he said, taking a deep breath. “It reads, HP Laserjet P1102W Self Test and Device Configuration.”

    The Commander stopped and looked up.

    “I believe they may have put the wrong page in.”

    In conversation about 7 months ago from infosec.exchange permalink
  3. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Sunday, 08-Sep-2024 02:36:04 JST Mike Sheward Mike Sheward

    Just watched a gentleman squeeze his Cybertruck into a compact space which leads me to believe we need to clarify the thing that is supposed to be compact is the vehicle, not the brain or penis

    In conversation about 9 months ago from infosec.exchange permalink
  4. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Wednesday, 28-Aug-2024 17:09:31 JST Mike Sheward Mike Sheward

    The best email you can get from any company is “you haven’t logged into our app for a while, so we are going to delete your info unless you do in the next X days.”

    Now that is an indicator of a company that has their shit together.

    It shows they are auditing activity.

    It shows they don’t want to hoard data.

    It shows they are making an effort.

    Ironically, it makes me want to sign in and use their stuff more.

    In conversation about 10 months ago from infosec.exchange permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      http://together.It/
    2. No result found on File_thumbnail lookup.
      activity.it
      This domain may be for sale!

  5. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Sunday, 11-Feb-2024 01:36:35 JST Mike Sheward Mike Sheward

    ugh

    In conversation Sunday, 11-Feb-2024 01:36:35 JST from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/111/903/128/490/937/328/original/06903dfa79015bc2.png
  6. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Sunday, 04-Feb-2024 23:28:12 JST Mike Sheward Mike Sheward

    “Whoa, is that the Cheesecake Factory menu or something?”

    “Nah it’s just a print out of all the TXT verification records in our DNS.”

    In conversation Sunday, 04-Feb-2024 23:28:12 JST from infosec.exchange permalink
  7. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 13-Jan-2024 04:36:18 JST Mike Sheward Mike Sheward

    Imagine if they had open-enrollment for cyber insurance and the only way you could enroll outside of that window was a qualifying life event. Those events would be stuff like:

    1) executive saw a presentation on AI
    2) mergers and acquisitions where you were so quick to want to join the networks you didn’t check what you were connecting too
    3) company decided to move back to on premises Exchange for some reason
    4) executive saw a presentation on blockchain
    5) Elon Musk purchases a majority stake in your company

    In conversation Saturday, 13-Jan-2024 04:36:18 JST from infosec.exchange permalink
  8. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Monday, 08-Jan-2024 04:45:50 JST Mike Sheward Mike Sheward

    “A key question for the NTSB and Boeing over the coming days will be whether this whole thing could’ve been avoided with the Flex Seal family of products.”

    In conversation Monday, 08-Jan-2024 04:45:50 JST from infosec.exchange permalink
  9. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Tuesday, 12-Dec-2023 06:06:08 JST Mike Sheward Mike Sheward

    I wrote an LLM usage policy at work today and this is 100% in there

    In conversation Tuesday, 12-Dec-2023 06:06:08 JST from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/111/563/172/207/268/975/original/6f0f960c58f98bca.jpeg
  10. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Thursday, 09-Nov-2023 19:28:21 JST Mike Sheward Mike Sheward

    “So it says here you’ve held executive positions at Theranos, FTX and most recently, WeWork.”

    “That’s right, I’ve dedicated my career to non-profits.”

    In conversation Thursday, 09-Nov-2023 19:28:21 JST from infosec.exchange permalink
  11. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Sunday, 29-Oct-2023 03:24:53 JST Mike Sheward Mike Sheward

    Another benefit to being a remote employee is it forces you to be better at documenting things because you can’t just have a passing conversation with someone where a decision is made. Instead, there’s a perfect record of decisions made, concerns raised and who is accountable and oh wow this is another reason some companies hate it.

    In conversation Sunday, 29-Oct-2023 03:24:53 JST from infosec.exchange permalink
  12. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Monday, 25-Sep-2023 07:19:58 JST Mike Sheward Mike Sheward

    QEMU IS a generic and open source machine emulator and virtualization tool, it IS NOT a conspiracy theory involving an emu with the highest level of security clearance.

    In conversation Monday, 25-Sep-2023 07:19:58 JST from infosec.exchange permalink
  13. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 16-Sep-2023 16:03:32 JST Mike Sheward Mike Sheward

    A reminder that if your company experiences a Ransomware incident, technically you should update your privacy policy to include whichever Ransomware group was behind it as a sub-processor

    In conversation Saturday, 16-Sep-2023 16:03:32 JST from infosec.exchange permalink
  14. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Thursday, 14-Sep-2023 10:13:32 JST Mike Sheward Mike Sheward

    Lots of bad hot takes on LinkedIn (or as I think we’re supposed to refer to it here, the Berksite), regarding social engineering and employee security awareness training post-MGM, “your employees are the biggest risk”, yada yada yada.

    Nope.

    If a single employee can be socially engineered resulting in such devastating impact, that’s not a failure of that employee. It’s a failure of several layers of people, including some who will have been paid more in a year than the socially engineered employee would have in ten, to allow such a target rich, mission critical environment, to develop without putting proper controls in place to stop an attacker at the first opportunity once they are in.

    And sadly, this story will play out hundreds more times, and the “untrained employee” will be thrown under the bus each and every time.

    #infosec

    In conversation Thursday, 14-Sep-2023 10:13:32 JST from infosec.exchange permalink
  15. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 17-Jun-2023 22:45:15 JST Mike Sheward Mike Sheward

    I keep forgetting I need to disclose a vulnerability to all physical key manufacturers. Essentially, it's possible to bypass the 'do not duplicate' message stamped into certain keys by taking them to a hardware store and asking a person who works there to duplicate them.

    In conversation Saturday, 17-Jun-2023 22:45:15 JST from infosec.exchange permalink
  16. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 10-Jun-2023 14:19:38 JST Mike Sheward Mike Sheward

    Top 3 most popular enterprise password managers:

    3) Slack conversation with self
    2) bash history
    1) Microsoft Excel

    In conversation Saturday, 10-Jun-2023 14:19:38 JST from infosec.exchange permalink
  17. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 27-May-2023 18:45:31 JST Mike Sheward Mike Sheward

    When you think about it, opening the cabin door at 700ft during landing is just the natural progression for those folks who like to stand up and start getting their bags before the plane has parked at the gate

    In conversation Saturday, 27-May-2023 18:45:31 JST from infosec.exchange permalink
  18. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Saturday, 20-May-2023 11:15:46 JST Mike Sheward Mike Sheward

    Idea: if you’re being forced to return to an office to work and are also required to be on-call, insist upon commuting into the office before you start work on fixing whatever outage triggered the on-call to make it easier to collaborate with your peers.

    “Oh no, site down, that’ll be costing us about $100k a minute - well better jump in the shower, get dressed and head on in, see you in about an hour and a half”

    In conversation Saturday, 20-May-2023 11:15:46 JST from infosec.exchange permalink
  19. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Tuesday, 17-Jan-2023 19:34:19 JST Mike Sheward Mike Sheward

    "so since our organization's annual spend with your company is now over a certain amount, you are classified as a 'critical' vendor to us, and we need you to fill out this security survey, or we can also accept a third party audit report like a SOC 2 or ISO 27001, do you have an audit?"

    Bartender: "erm"

    In conversation Tuesday, 17-Jan-2023 19:34:19 JST from infosec.exchange permalink
  20. Embed this notice
    Mike Sheward (secureowl@infosec.exchange)'s status on Tuesday, 17-Jan-2023 03:26:51 JST Mike Sheward Mike Sheward

    who called it BGP instead of “fuck around and find route?”

    In conversation Tuesday, 17-Jan-2023 03:26:51 JST from infosec.exchange permalink
  • After
  • Before

User actions

    Mike Sheward

    Mike Sheward

    Author of Digital Forensic/Pen Test/Blue Team Diaries, Hands-on Incident Response and Digital Forensics & Security Operations in Practice! (he/him) #infosec #DFIR #BlueTeam #Pentesting

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          43307
          Member since
          30 Nov 2022
          Notices
          63
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.