House of CISSPs

Submitting and getting accepted to present a talk at any conference is just the first step. If you want to ensure you get a good turnout to your talk, you need to work the attendees. A task that becomes even more difficult when you're scheduled to speak on the last day. It's at times like … Continue reading House of CISSPs

Spiceworld Austin

Being my first time in Austin, Texas I was slightly disappointed to be honest. I was expecting, boot-wearing, tobacco chewing and big hat wearing cowboys walking around open-carrying. But Austin is actually a really nice place - albeit a little hot for a London-boy like me. Spiceworks put on a great show though and AlienVault … Continue reading Spiceworld Austin

Filling the infosec skills gaps with Stealth Worker

Is there an infosec skills shortage? Many industry surveys would indicate yes. And even if there isn’t a great shortage today - the rate at which new professionals are joining the security industry is outpaced by the number of company’s creating systems which need some level of security oversight. Ken Baylor, former CISO at Pivotal … Continue reading Filling the infosec skills gaps with Stealth Worker

Simulating Threats with vThreat

Protection remains an important step in the security ecosystem, yet no matter how good the prevention, human error, breakdown in processes or technological weaknesses mean these can be bypassed. While that doesn’t mean enterprises should bury their protective products in shallow graves, buying trends indicate that more investments are being made in detection and response … Continue reading Simulating Threats with vThreat

Blackhat Swag

Upon returning from a week in Las Vegas for BsidesLV and Blackhat, it is time I went through my goody bag to see what I returned with. I wish I understood what half the stuff I picked up was!

Blackhat 2015

Another year, another Blackhat and another video. Putting that aside - have you seen how different Khalil (pilgrim) looks? The man looks like he's lost half his bodyweight in 2 years... some seriously impressive stuff! Here are a couple of before and after pics with him for reference. 

Defcon talk: Chris Rock, I will Kill You

I thought the talk at Defcon by Chris Rock around exploiting the flaws in the deaths and births registration process was very good. More interesting than the technical aspects are the potential nefarious use-cases such as committing virtual mass-murder, or raising virtual babies for the purposes of insurance fraud, second identities and much more. This is important … Continue reading Defcon talk: Chris Rock, I will Kill You