Brutkey

Bill
@Sempf@infosec.exchange

It's that time.

That time when clients make security consults take the security training those same consultants wrote the previous year.


Bill
@Sempf@infosec.exchange

DID YOU KNOW...

that major cybersecurity considerations include phishing, ransomware, cloud access, and .... stolen session cookies?

Does anyone even use session cookies anymore, in this age of JWTs?

Bill
@Sempf@infosec.exchange

They are covering the risks of AI in SE attacks heavily - that's kind of good. OK, five points to House KnowB4.

Bill
@Sempf@infosec.exchange

Ok, I withdraw some of that. They did a demo and it was showing browser takeover and poorly structured JWTs in Teams. I smell what they are cooking. Carry on.

AA
@AAKL@infosec.exchange

@Sempf@infosec.exchange Every website you visit?

Bill
@Sempf@infosec.exchange

@AAKL@infosec.exchange Naw. Not in the corporate world. But see my addendum.