Skip Navigation

Posts
292
Comments
266
Joined
3 yr. ago

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

Off-Topic Friday

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Off-Topic Friday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

Off-Topic Friday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

Off-Topic Friday

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

Off-Topic Friday

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

What are You Working on Wednesday

cybersecurity @infosec.pub

Mentorship Monday - Discussions for career and learning!

cybersecurity @infosec.pub

Off-Topic Friday

  • A measured response to be sure. Thanks for writing it up. I'm definitely not the one who's going to tell you for sure what CloudFlare should or should not do in this case or any other cases. It's a tricky business to be in in terms of making those decisions. That said, I do think there is a line to be drawn SOMEWHERE, and because of this they would eventually need to deplatform something. If that signals to the regimes of the world that Cloudflare can be influenced than so be it, but to me (and I think a lot of the people who were going after Cloudflare during this time), Nazi's (and those sites you mentioned, e.g. Kiwi Farms) are easy to draw lines for. Good thing I'm just a dude on Lemmy and not a high powered CF exec hah!

  • WGU is a popular option for school that is more budget and time-friendly. Have you run into issues applying to jobs that required a degree?

  • Covid, war, alt-right fascists, AI, TikTok, capitalism maxed out, climate change, where should I stop?

  • China. Also, no one is saying FB is fine, but since it’s American then gov pretty much shrugs. It was FB after all feeding the NSA yeah?

  • Yeah that's definitely how I approached my site to begin with. A. a place for me to write about stuff I personally want to remember and go back and look at. and B. a place where I could share information I have that I repeatedly tell others. Over time though, I found that people did indeed like to read what I had to say and found it useful. This is always a bit shocking for people who write, it's a great feeling to know others read your stuff haha. I think I'm an OK writer but I certainly have a unique-ish style. The world needs more indie writers with unique voices and styles. Too much of the Internet has become SEO farming trash and AI generated nonsense. Us "real", authentic humans have to take it back.

  • Because AI is the literal worst.

  • This actually sounds kinda good

  • Who’s asking for this? The future is bleak

  • Fair enough. Just remember, there’s more (a lot more) to infosec than just Hack the Box stuff.

  • Pure appsec certs off the top of my head… OSWE, GIAC GWAPT (and others from SANS), Portswiggers Burp Suite cert, OffSec also has a 200-level appsec cert. I’m sure there are other popular ones too.

  • Yeah infosec is pretty huge. Do you have an idea more specifically of what you want to do? Like what type of role are you looking for or skills would you like to have?

  • Hard to give you a definitive answer on this one. I'd say you'd be hard-pressed right now to pull that off without a direct referral or other networked way-in. Job market is condensing, lots of (experienced) out-of-work folks looking for new roles, etc... If you aren't already in infosec, or you're not a full-time dev with some security knowledge, it will be tough. Your best bet (roughly) on things to add to your skills/portfolio would be...

    • Proficiency with one or more languages that your target role company uses (and evidence of this XP)
    • In-depth knowledge of OWASP "stuff" (Top 10, ASVS, etc...)
    • Practical XP with attacks/exploits (via experience, CTFs, trainings, Web Security Academy, etc...)
    • Some applicable certs

    Some other stuff you might find useful....

  • Li'l late, but I've been working on some re-design for my blog. I can't overstate how much I hate CSS.

  • Nice! If anything worth sharing maybe you can do so here or on Mastodon. Cheers!