@mttaggart@infosec.town

mttaggart

@mttaggart@infosec.town

Displaced Philly boy. Threat hunter. Streamer. Educator. Dad. Captain in the fight against #llm insanity. #infosec, #programming #rust, #python, #haskell, and #webapp. #opensource advocate. Cofounder of https://infosec.exchange/@thetaggartinstitute. Made wtfbins.wtf. Not your bro. All opinions my own. #fedi24 #searchable

This profile is from a federated server and may be incomplete. Browse more on the original instance.

Vivaldi, to productivity
@Vivaldi@vivaldi.net avatar

Looking for a new that increases your and does not spy on you?

The switch is fairly simple but would have huge results๐Ÿ‘‡

https://vivaldi.com/blog/how-to/how-to-make-the-switch-to-vivaldi

What's your favorite feature in Vivaldi?

mttaggart,

@Vivaldi For me it's a tossup between tab stacks and the built-in reading list. Both are now so crucial to my workflow, I'm not sure what I'd do without them.

mttaggart, to Cybersecurity

At this point I have taught or advised hundreds of aspiring hackers. I've provided instructional content to thousands more.

I can count on one hand the number of times an aspirant has told me they want to go into defensive cybersecurity. , , ...these ain't lighting up the imagination of the padawans.

But I constantly see mid-career pentesters/red teamers decide to move over to defense for one reason or another.

Which leads me to conclude that we've made a fatal flaw in training. Since a defender must understand attacks anyhow, I am coming to the conclusion that all technical cybersecurity training should begin with the offensive skills. Then mix in the defense. I believe seeing both sides like this might make defense more appealing earlierโ€”and produce better defenders.

mitch, to random
@mitch@posts.dumb.stuff.donaberger.xyz avatar

deleted_by_author

  • Loading...
  • mttaggart,

    @benjaminhollon @mitch Just seeing this. has groups, which is not standard AP, but demonstrates that this is possible.

    tweedge, to infosec
    @tweedge@cybersecurity.theater avatar

    I tell ya hwat, I don't think most of the field is ready for a Safety-II mindset. Just look at how differently the human factor is considered in Safety-I and Safety-II ... that certainly rings a bell with all the user-blaming I've seen :/

    Maybe someday.

    mttaggart,

    @tweedge Wowowow yeah. Like, if negative reinforcement were going to solve our problems, we'd all already be out of work.

    mttaggart, to rust

    Rustaceans, I think you need this Crab Facts Advent calendar, which supports local science education: https://squidfacts.bigcartel.com/product/crab-facts-advent-calendar

    Care of the amazing @SarahMackAttack

    vwbusguy, to Software
    @vwbusguy@mastodon.online avatar

    Sometimes I think of all the cool that has been authored at my current employer: BSD, vi, Pascal, UCSD P-System, Eucalyptus Cloud, Postgresql, and now the Zero to JupyterHub data science stuff I'm currently involved in implementing, and it motivates me to want to continue to build an excellent stack just to see what will come of it and what we might do next with it all, and who else will get to benefit from all of it.

    mttaggart,

    @vwbusguy Also, y'know, the internet.

    mttaggart,

    @vwbusguy UC is Node 1 and 3 baybee

    I know it's not your location but still

    mttaggart,

    @vwbusguy Oh neat! I'm sorry; I read your original post as that you were at UCB. Even cooler!

    mttaggart, to random

    Okay.

    My body is ready.

    Besides being based on Chromium, tell me all the ways Vivaldi is terrible that I don't know about.

    mttaggart,

    @tripplehelix And to be clear, your objection to Blink is its stewardship by Google?

    mttaggart, to random

    Substack is trash, but let's not let Medium off the hook.

    I'm embarrassed I ever used that service.

    mttaggart, to random
    hrbrmstr, to random
    @hrbrmstr@mastodon.social avatar

    It seems Google is gunnin' for VS Code https://idx.dev/

    mttaggart,

    @acdha @hrbrmstr My quick take is that this is an attempt to collect data to start building a competitor to GitHub Copilot, and I already said no thanks to that.

    vwbusguy, to random
    @vwbusguy@mastodon.online avatar

    Imagine the potential positive environmental impact change we could have if we all just fixed and optimized the terribly inefficient javascript libraries that so many websites and webapps use.

    mttaggart,

    @vwbusguy I'd love to see an energy usage comparison between an app made with straight React/Vue and another one using server-side rendering.

    mttaggart,

    @vwbusguy That is true, but the power usage is also then about everything between server and client, is it not?

    mttaggart, to random

    Sometimes I just have to sit back and wrestle with what a number being labeled "gifted" at age 8 did on me.

    mttaggart,

    @mitch Like on the one hand my education involved building rockets and playing Myst. On the other hand, I was handed a series of impossible expectations that I spent my life trying to fulfill, so ยฏ_(ใƒ„)_/ยฏ

    mttaggart, to random

    Let's gooo:

    The commitments being rolled out today include:

    • The Federal Communications Commission will create a pilot program to provide up to $200 million over three years to strengthen cyber defenses in K-12 schools and libraries.
    • The Education Department will establish a Government Coordinating Council (GCC) to act as a conduit for collaborating between federal agencies and education organizations.
    • The Cybersecurity and Infrastructure Security Agency (CISA) will provide training to 300 new K-12 entities, hold monthly digital exercises and issue updated guidance for institutions.
    • Amazon Web Services will offer a $20 million K-12 cyber grant program to all school districts, as well as free security training and incident response assistance to entities that come under digital assault.
    • Cloudflare will offer a suite of free Zero Trust tools to public school districts with under 2,500 students.
    • Google will release an updated guidebook for schools on best security practices.

    https://therecord.media/white-house-school-cybersecurity-initiatives

    mttaggart,

    @AAKL Couldn't agree more! I imagine the funding stream for them will be a bit more complicated, especially as so many hospitals are private institutions.

    mttaggart, to random

    If "MW2" means the following image to you, please do some stretches to help out your back today.

    mttaggart, to random

    Blog post from Zoom about their March updated terms.

    For AI, we do not use audio, video, or chat content for training our models without customer consent.

    So apparently the gnarly stuff is opt-in?

    The rest is an attempt to clarify IP rights, but does so in an unbelievably ham-fisted way.

    https://blog.zoom.us/zooms-term-service-ai/

    endareth, to infosec
    @endareth@disobey.net avatar

    Any chance anyone has a copy of the previous version of โ€™s Terms & Conditions? Or even better, anyone got a diff?

    mttaggart,

    @endareth This is the actual most recent version prior to the change: https://web.archive.org/web/20230301000542/https://explore.zoom.us/en/terms/

    The differences are significant. "Customer Content," is not even a defined term in the prior version.

    mttaggart, to random

    I love Trek enough to tell it that "Subspace Rhapsody," while fun, had lyrics of the approximate quality of a work holiday party parody.

    mttaggart, to random

    All day every day

    (h/t https://www.tumblr.com/macleod)

    mttaggart, to random

    Is Hacker Summer Camp not your thing? Can't make it for life reasons? Still aware that the rona is a real risk?

    That.

    Is.

    Okay.

    Ain't nothing about going or not going to a conference makes you any less awesome. Keep doing your thing, cyberpunk.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • โ€ข
  • megavids
  • InstantRegret
  • DreamBathrooms
  • ethstaker
  • magazineikmin
  • thenastyranch
  • ngwrru68w68
  • Youngstown
  • slotface
  • modclub
  • love
  • kavyap
  • everett
  • cubers
  • provamag3
  • mdbf
  • khanakhh
  • tacticalgear
  • osvaldo12
  • rosin
  • tester
  • GTA5RPClips
  • cisconetworking
  • Durango
  • Leos
  • normalnudes
  • anitta
  • JUstTest
  • All magazines