Recent Posts
- {QuickPost} Windows 8 Digital Product Key recovery
- Defense by Numbers: Making problems for script kiddies and scanner monkies
- BSidesLondon 2013
- Privoxy Proxy Authentication Credential Exposure – CVE-2013-2503
- {QuickPost} Research Teaser – HTTP Response Codes
- Burp Extension – Scanner Streamer
- {QuickPost} /auxiliary/server/capture/printjob_capture
- SANS SEC710: Advanced Exploit Development
- SANS SEC642: Advanced Web App Penetration Testing and Ethical Hacking (review)
- Some thoughts on HTTP response codes
Archives
@ChrisJohnRiley
- [SuggestedReading] Bulletproof SSL/TLS and PKI bit.ly/14Gaypz 43 minutes ago
- Sad not to be at #berlinsides... #TeamSadPanda 1 hour ago
- RT @thegrugq: The cloud is a slum. You rent a room for your stuff, but you have to share it with 4 other families. And the hallways are ful… 2 hours ago
- Anybody know what happened to the Riskhose podcast? Feed is dead… (cc @alexhutton) 3 hours ago
- RT @jack_daniel: It is so cute how people think infosec is a real industry, and that it matters. 16 hours ago
- [SuggestedReading] Dissecting Blackberry 10 - An initial anal... blog.sec-consult.com/2013/05/whitep… 16 hours ago
Links
Disclaimer
The contents of this personal blog are solely my own opinions and comments, as such they do not reflect the opinions of my employer(s) past, present or future. No legal liability is accepted for anything you do, think, or consider fact as the basis of articles and links posted on this blog.
"Three to one...two...one...probability factor of one to one...we have normality, I repeat we have normality. Anything you still can’t cope with is therefore your own problem."
Note: A large portion of content I post on my blog comes from "live blogging" of security conferences. These posts are in notes form and are written live during a talk. As such errors and emissions are expected. I'm only human after all!
It’s been an odd year so far… the blog has been quiet, and I’ve stepped back a little due to personal reasons over the past few months. Still, it’s overdue time for the summer cons, and this years trivector of chaos (BSidesLV, Blackhat and Defcon) is looking to be the biggest yet.
Las Vegas – The entertainment capital of the world.


One of the big things I’ve always thought the InfoSec community lacked was a solid and supported mentor program. InfoSec is one of those industries where everybody goes their own way, takes their own path and learns their own thing. Personally I appreciate this, as I like the variety that it offers. For people new to the industry though, it’s hard to find the path they need/want to take. So often management pigeonhole people into “security” without the understanding that alone this word doesn’t mean anything.


