srcquench.bsky.social
srcquench.bsky.social
@srcquench.bsky.social
Reposted by srcquench.bsky.social
MFA will be requiered by default for OWASP ASVS Level 2. And so will device-bound passkeys/eIDAS-LoA3/NIST-AAL3 for ASVS Level 3.

If your app don’t, you better have a really good reason for it or take it off the internet.

github.com/OWASP/ASVS/b...
github.com
May 8, 2025 at 6:26 PM
Reposted by srcquench.bsky.social
The Threat Modeling Connect community are launching the first-ever community-driven State of Threat Modeling (SOTM) Report, led by @rewtd.bsky.social
and Dave Soldera, and we’d love your input!
docs.google.com/forms/d/e/1F...
The survey will take 15-20 minutes to complete.

#cybersec #infosec
State of Threat Modeling (SOTM) 2024 Survey
Welcome to the first-ever State of Threat Modeling (SOTM) Survey! What is the SOTM Survey? The SOTM Survey is part of the research for the first community-driven State of Threat Modeling (SOTM) Repor...
docs.google.com
March 14, 2025 at 9:20 AM
Reposted by srcquench.bsky.social
"führen zum mutmaßlichen Anführer. Sie erzählen die aberwitzige Story seiner Flucht vor dem Gesetz."
March 3, 2025 at 8:13 AM
Reposted by srcquench.bsky.social
Trump kündigt #KI-Sicherheit auf, stoppt #Umweltschutz und #Infrastruktur

"Der neue US-Präsident macht dutzende Erlässe seines Vorgängers rückgängig und bremst so Innovation. Also braucht es mehr Energie, die Öl und Gas bringen sollen." www.heise.de/news/Trump-k...
Trump kündigt KI-Sicherheit auf, stoppt Umweltschutz und Infrastruktur
Der neue US-Präsident macht dutzende Erlässe seines Vorgängers rückgängig und bremst so Innovation. Also braucht es mehr Energie, die Öl und Gas bringen sollen.
www.heise.de
January 21, 2025 at 6:18 AM
Reposted by srcquench.bsky.social
The other day I found my son browsing the internet. To my horror he was browsing various forums on the dark web.
„What the hell are you doing??!“ I asked.

„I forgot my password, so I am trying to find it“, he replied.
December 31, 2024 at 11:51 AM
Reposted by srcquench.bsky.social
Cyber startup employee hacked to distribute malicious Chrome extension
Cyber startup employee hacked to distribute malicious Chrome extension
Cybersecurity startup Cyberhaven, which specializes in insider threats, said it is investigating a hack of a single administrative account that spread a malicious version of its Google Chrome browser extension.
therecord.media
December 27, 2024 at 2:52 PM