Australian Defence Department caught up in ransomware attack

The Australian Department of Defense has been caught up in a ransomware attack. Hackers have targeted an external information and communications provider with the company initially telling the defense that no data of current former personnel have been compromised....
Speaker at OWASP Lagos Chapter

Speaker at OWASP Lagos Chapter

One of the benefits of video conferencing is that you can speak to audiences all over the global. I’ve never been to Lagos, let along Africa, but had the opportunity to speak at the OWASP Lagos Chapter. Due to the timezone differences, I think I had to do the...
It’s Not Your Developers’ Fault

It’s Not Your Developers’ Fault

This year’s RSA theme is Resilience. It’s once again a virtual event, which means I get to attend as a speaker without needing to travel to San Francisco. Title: It’s Not Your Developers’ Fault Time: 5:00pm to 5:30pm (EDT) Description:The...
RSA Conference Asia Pacific &Japan 2020

RSA Conference Asia Pacific &Japan 2020

This was my first virtual RSA presentation. Previously it had always been in person at Marina Bay Sands in Singapore. However due to the pandemic, this session was done virtually. The title of my talk was Your Application is Mostly Written by...
SafetyCulture Quality Engineering Meetup

SafetyCulture Quality Engineering Meetup

I had the great opportunity to speak at SafetyCulture’s inaugural quality engineering Meetup. I was the first speaker of three with the other speakers being Georgia De Pont who heads up quality at Dovetail Studios and Roger Chapman, who is a distinguished...

Building an Engineering Security Culture

https://www.cloudsecuritypodcast.tv/videos/building-an-engineering-security-culture I had the pleasure of being on Ashish Rajan’s Cloud Security Podcast to talk about Building an Engineering Security Culture. We discussed about the following topics: What is...
Your Website Might have an Unknown OSCP Dependency

Your Website Might have an Unknown OSCP Dependency

A few weeks ago, a friend who looks after a web server had an outage on their website and asked me to help troubleshoot. The cause of the outage surprised me and is the reason why I’m writing about it. The website outage was due to a dependency it had on the server of...

My Thoughts on FAIR

photo taken from yorkfair.org I recently completed the FAIR analysis fundamentals course and here are my thoughts on it. FAIR stands for Factor Analysis of Information Risk, and is the only international standard quantitative model for information security and...