Тёмный
Security BSides San Francisco
Security BSides San Francisco
Security BSides San Francisco
Подписаться
Security BSides San Francisco is a two-day information security conference. It is a conference by the community for the community.
Комментарии
@duckie4670
@duckie4670 22 дня назад
why handling the public securely important? i got my private key secure and auotmstions handle deployment of public keys , doesn't matter how all matters it needs to end up in right place. public key can be public. also generating ssh keys by the user is one command experience
@beautifulcatastrophes463
@beautifulcatastrophes463 27 дней назад
Well. Notion took THIS over.
@benjidaniel5595
@benjidaniel5595 12 дней назад
Yep, and they're essentially just burying it and as far as I can tell, have not announced any plans to add E2E encryption to Notion. Very disappointing. Skiff sold out big time
@ShashankBindulbavi
@ShashankBindulbavi Месяц назад
Great presentation Rick. Learnt a lot :)
@bitstop2003
@bitstop2003 Месяц назад
We use AI to help new hires get up to speed in cybersecurity tasks.
@vineetjain1965
@vineetjain1965 Месяц назад
Great Work Nishant and Narayan. Very informative
@nikhiljain4307
@nikhiljain4307 Месяц назад
Nice work Nishant! Keep it up :)
@PetrPinkas
@PetrPinkas Месяц назад
Great speech Dave!
@TamObso
@TamObso 3 месяца назад
Just learning about all this, so this was very VERY helpful in understanding the use of "strict-dynamic", "nonce", and using them in conjunction with one another.
@whilykitt
@whilykitt 3 месяца назад
I keep my rolodex thanks! The use of AI on the suggested apps is very squcky! Like fine if you want to have generative data created off of your social / work / friends group, but do I as a friend get to opt out?
@jkorchok
@jkorchok 6 месяцев назад
Good work, Nika!
@fragfreek8375
@fragfreek8375 7 месяцев назад
Awesome informative discussion. Love the panel members and the insight they bring from their respective roles and experiences!
@KevinRiggle
@KevinRiggle 9 месяцев назад
Hmm. Seems like the audio didn't make it on this one.
@diegocastillo6470
@diegocastillo6470 9 месяцев назад
10:00 minute and already this is a very very good video. Thank you for this awesome content.
@Zaulao
@Zaulao 9 месяцев назад
Amazing panel with brilliant people!
@x.plorer
@x.plorer 10 месяцев назад
What does she mean by 'don't hire unicorns'? 16:50
@tonkotsu_noodles
@tonkotsu_noodles 10 месяцев назад
yeah what the hell is this unicorn ?
@ericp4959
@ericp4959 9 месяцев назад
really shouldn't discriminate against anyone - that's actually pretty poor advice and a poor way to word her views on hiring - everything else was alright
@dmac1653
@dmac1653 11 месяцев назад
that talk was a banger
@andrewleonjohnson
@andrewleonjohnson 11 месяцев назад
We need more people who think like this in information security.
@mouhannadal-hmedi1501
@mouhannadal-hmedi1501 Год назад
free palastine!
@MakeItHackin
@MakeItHackin Год назад
Great talk!
@scottpiper654
@scottpiper654 Год назад
Rami is an awesome moderator. This was a great conversation.
@shahswienesuthas929
@shahswienesuthas929 Год назад
Good sharing.
@rogerl19
@rogerl19 Год назад
Thanks for sharing, this is an awesome architecture. Learned more about security in 20 min than I did in any class.
@leeren_
@leeren_ Год назад
Amazing
@jesusqc
@jesusqc Год назад
nice job
@timearp8185
@timearp8185 Год назад
It's a shame that customers and certification schemes such as the UK Cyber Essentials 'demand' you patch, rather than allowing a risk or mitigation based approach.
@hclyrics
@hclyrics Год назад
Absolutely love what y'all are doing with Skiff!
@the3dstudio576
@the3dstudio576 Год назад
need slides
@AndrewMilich
@AndrewMilich Год назад
So good!
@SamRandolph
@SamRandolph Год назад
Great job! You killed it on this talk. 🎉
@SamRandolph
@SamRandolph Год назад
Love the GIFs and background images too. So aesthetic!! 💖🪻🌹🌈
@tsarvlad
@tsarvlad Год назад
Insightful!
@user-ds9ug3fi4q
@user-ds9ug3fi4q Год назад
The best line: You know we are all bought in to the idea of shift lift but I dont remember signing the dotted line saying, Hey I want to be a glorified pipeline manager for the rest of my career. Couldn't agree more!
@shikida
@shikida Год назад
One really interesting point in this presentation is that hollywood video had to assume some sort of loss in order to keep a good relationship with the customer, which is completely different from a real threat :-) but it's interesting because I was wondering if a real application could have this sort of threat in the model: something that you assume you're going to lose in order to keep the business running, for example. And the first question in the end is interesting because it shows how it was about privacy before the internet ;-) pretty much one of the most interesting presentations so far
@shikida
@shikida Год назад
This is so kawaii, I wasn't expecting that
@chamirodriguez8469
@chamirodriguez8469 Год назад
so proud of you big sis !!
@vipinsharma1984
@vipinsharma1984 Год назад
p😊
@dlaci1
@dlaci1 Год назад
Just a side note, using SSSD you can query ssh keys stored in active directory, no need to copy ssh keys to each server. Using SSHFP DNS record the NO TOFU can be avoided. Thank you for the presentation 👍
@mikesmith1678
@mikesmith1678 Год назад
Funny guy, love him!
@subtleashtheimmortal
@subtleashtheimmortal Год назад
"You don't have to know how to fly a jet to be in an aircraft" This has to be one of the greatest security-engineer-not-knowing-programming jibe ever
@shikida
@shikida Год назад
I wonder how he could perform ressonance exams with these implants
@subtleashtheimmortal
@subtleashtheimmortal Год назад
Challenging yet tremendously useful initiative! Take a bow for picking it and sharing with the community.
@JeffMcJunkin
@JeffMcJunkin Год назад
Great write-up! I love how the bug and game both paid homage to the OG Pokemon.
@marijuanarocks
@marijuanarocks 2 года назад
Evilginx2 doesn't do Gmail anymore. The gmail template doest work for initial access
@jvburnes
@jvburnes 2 года назад
Amazing, but no comments since 2019?
@haile3619
@haile3619 2 года назад
What cloud resources specifically are referred to as 'workers' in this case?
@louisjinhui1420
@louisjinhui1420 2 года назад
Hey Beautiful! I'm impressed on how you ended this video Magnificient. You have massive audiences! impressive! see you around
@elzerpineda2604
@elzerpineda2604 2 года назад
execelente!
@hazhohuman
@hazhohuman 2 года назад
please put the resources in the description
@TheRobMozza
@TheRobMozza 2 года назад
As guest speakers go.. your fantastic
@declanmcardle
@declanmcardle 2 года назад
We use ssh certs where I work. Very handy. Looking forward to implementing it in my next place...
@tusharjambhekar
@tusharjambhekar Год назад
Can I use SSH certs for communicating Ansible server over the Windows host (openssh) authentication?
@heavoc9793
@heavoc9793 2 года назад
Great demonstration ! THANK YOU Rick ! 👍👍