shellsharks, to infosec

A quick-look at a not-so-talked-about type of security assessment, the "Secure Configuration Review”. Here I introduce a quick methodology for conducting this sort of review and provide examples of configs/settings you might typically evaluate during the assessment. Consider using this assessment type in the context of triaging OWASP Top 10 "Security Misconfiguration" or CWE-16-type flaws.

https://shellsharks.com/secure-config-review

shellsharks, to SmallWeb

In 2019 I started my blog but knew nothing of the #IndieWeb or #SmallWeb. Thanks in large part to the awesome #Mastodon community I was introduced to these concepts and have been diving in ever since, adding IndieWeb capabilities to my site and exploring the Indie World in its entirety. To help introduce others to the IndieWeb as well as catalog useful/interesting things I encounter I decided to write a post about it.

https://shellsharks.com/indieweb

That piece features a few cool lists like a list of webrings, blogrolls, IndieWeb search engines, indie site hosting providers and more!

To further help “score” my site on its “IndieWeb-ness”, I also wrote the following post about #IndieMark which includes my site’s score.

https://shellsharks.com/indiemark-score

#blogging #mondayblogs #webrings #blogroll

shellsharks, to infosec
shellsharks, to lemmy

Wrote a “guide” to / last year after Reddit went full enshittify.

https://shellsharks.com/threadiversal-travel

If you’re interested in checking out a -based alternative to Reddit, come check out infosec.pub! It hosts a number of communities including one I’ve stood up for / !

https://infosec.pub/c/cybersecurity

shellsharks, to mastodon

I wrote this “guide” / thoughts on #Mastodon after re-joining the Fediverse in November 2022 (soon after some sort of Twitter-related crisis). This coincided with one of the larger migrations of #infosec folks to Mastodon.

https://shellsharks.com/mastodon

I have kept this post semi-updated with a lot of interesting Mastodon/Fediverse-related resources as well as information for the infosec community here.

#mondayblogs #twittermigration

shellsharks, to infosec

My compendium on the multitude of threat modeling methodologies out there. https://shellsharks.com/threat-modeling

It features quite a few frameworks currently! (With more planned for the future)

  • Microsoft Threat Modeling
  • PASTA
  • OCTAVE
  • Trike
  • LINDDUN
  • VAST
  • NIST SP 800-154
  • OWASP TMP
  • TARA
  • IDDIL/ATC
  • hTMM
  • QTMM

#infosec #cybersecurity #threatmoddeling #mondayblogs #blogging #stride #pasta

shellsharks, to blogging

I’ve really loved writing for and building my blog over the years, making it uniquely mine. I highly encourage everyone to have an Internet “home” of their own and even better, to publish their own writing/thoughts there! A few years ago I wrote about why I blog and why you should too!

https://shellsharks.com/you-should-blog

#mondayblogs #indieweb #blogging

shellsharks, to infosec

If any #infosec (or prospective #cybersecurity) folks out there are looking to get into Vulnerability Management (#VM), take a look at this #free “Bootcamp” I whipped up a few years ago. Cheers!

https://shellsharks.com/vm-bootcamp

#mondayblogs #training

shellsharks, to blogging

I’m a big #inboxzero fan, both as a means to generally declutter but also as a mechanism to fuel a productive to-do driven life. Check out the two-part series on Inbox Zero below if you’re interested!

Part I (the Art): https://shellsharks.com/inbox-zero

Part II (the Science): https://shellsharks.com/inbox-zero-part-2

#mondayblogs #blogging #indieweb #productivity #email

shellsharks, to random

My strategy and philosophy for syndicating content from my site.

https://shellsharks.com/syndication-strategy

#indieweb #posse #pesos #syndication #mondayblogs #nablopomo

lydiaschoch, to Fitness
@lydiaschoch@mastodon.social avatar
shellsharks, to infosec

For #infosec folks out there, what’s your routine/strategy for “staying current” in the field? I’ve written about my daily reading routine here for anyone interested.

https://shellsharks.com/notes/2023/11/06/keeping-current-in-infosec

#cybersecurity #nablopomo #mondayblogs

shellsharks, to infosec

My latest post is on the subject of "Secure Configuration Review". It's my take on a very specific style of security assessment. Check it out!

https://shellsharks.com/secure-config-review

shellsharks, to infosec

My ever-growing, gigantic list of #infosec blogs, with sections for indie, commercial, aggro and more!

https://shellsharks.com/infosec-blogs

The post currently features 3300+ unique infosec-related blogs/sites and has a downloadable, importable .opml file for use in your RSS aggregator of choice.

If you have a blog or site you want included in the list or know of one that is missing, feel free to let me know!

#mondayblogs #blogging #indieweb #cybersecurity

shellsharks, to blogging

In what is my longest (by word count) post to date, I write about my journey into infosec, advice for getting into the field, and provide a ton of resources and "mini"-reviews on the assortment of cybersecurity trainings/certifications I have taken (including a review of my Masters program at JHU).

https://shellsharks.com/training-retrospective

shellsharks, to blogging

I maintain this list of categorized, online/digital IT and infosec-specific training resources/platforms

https://shellsharks.com/online-training.

#mondayblogs #blogging #infosec #cybersecurity

shellsharks, to blogging

A short, introductory guide I made on Intel assembly language. I created this guide during my masters for my “Computer Organization” class at John’s Hopkins. It was useful to me back then!

https://shellsharks.com/intel-assembly-primer

#mondayblogs #blogging

shellsharks, to RSS

A short piece I wrote in 2019 on my love of #rss. If anything, I love it even more these days…

https://shellsharks.com/an-ode-to-rss

#mondayblogs #blogging #indieweb

shellsharks, to blogging

A curated, continuously-updated and (decently) categorized list of online"infosec tools", many of which I use myself.

https://shellsharks.com/infosec-tools.

#mondayblogs #blogging #infosec #cybersecurity

lydiaschoch, to Fitness
@lydiaschoch@mastodon.social avatar
bobmueller, to generativeAI

In which I talk about the Church of the Nazarene, Pre-K, and houses.

From Nostalgia to New Beginnings Faith, Change, and Controversy - https://bit.ly/3Pe5FlO - via @bobmueller

#MondayBlogs #evangelicals #GenerativeAI #LGBTQ+

lydiaschoch, to Weightlifting
@lydiaschoch@mastodon.social avatar
shellsharks, to blogging
bobmueller, to random

Good to see more people using the #MondayBlogs hashtag. Anyone in the #WritingCommunity could benefit from it. The only rules are no porn and no book promo. It's about your blogs. Boost posts throughout the day.

https://badredheadmedia.com/2013/12/31/mondayblogs-participate/

starbreaker, to Life en-us

Early Sunday morning (I mean real early) I came across a post by some blogger and grant writer named Jake Seliger who's dying of cancer and has a lot of regrets for how he lived his life.

I couldn't help but wonder what good his regrets could possibly do him when the end of his journey is imminent. But rather than comment on his site I used my own.

starbreaker.org/blog/tears-in-…

This might be kinda depressing for #MondayBlogs, though.

#life #death #cancer #regret #forgiveness

  • All
  • Subscribed
  • Moderated
  • Favorites
  • tester
  • thenastyranch
  • magazineikmin
  • InstantRegret
  • Youngstown
  • slotface
  • hgfsjryuu7
  • mdbf
  • vwfavf
  • kavyap
  • tsrsr
  • ngwrru68w68
  • PowerRangers
  • DreamBathrooms
  • Leos
  • everett
  • Durango
  • osvaldo12
  • khanakhh
  • ethstaker
  • rosin
  • cubers
  • tacticalgear
  • GTA5RPClips
  • normalnudes
  • cisconetworking
  • modclub
  • anitta
  • All magazines