OpenClaw, KiloCode and why CLI > MCP OpenClaw would not work without CLIs. Long live the terminal. In bash we trust.
My top 7 security posts from the past year At Lightspin we brought you the Top 7 Cloud Attack Paths of 2022, and in honor of that, I’ve compiled 7 posts from the (mostly 2022) infosec social media archives, some you have seen, others you probably haven’t. Here’s to doing security even better in 2023, and
AWS Security Bulletins and Cloud Security Researcher Trends In the last 5-years, AWS has published on average just over 7 security bulletins per year. This year has seen the most bulletins published since 2017 when there were 12 (though 8 of them were related to the Xen hypervisor so you could argue there was more like 4 -
HACK Issue 16: The Threats and Security Matrix, Cloudflare shows us bug bounty do's and dont's, and Shoot your shot As I write this, the Kentucky Derby is on TV and the announcer just said they have 150,000 people in attendance, first time since the pandemic that it's been a capacity crowd. So great to see! And tis the season, I just announced yesterday I'll
HACK Issue 009: 3,000 day old AWS IAM keys, Moving workloads out of Exadata, and Jonathan Scott's end game Quick digest this week. Had some work travel this week for the first time in a while, which was awesome! Heading to out on vacation tomorrow so no HACK digest next Friday. From the blog Jonathan Scott's end game and my advice for infosec twitter and jonathandata1 [https:
Jonathan Scott's end game and my advice for infosec twitter and jonathandata1 Jonathan Scott is smart. He doesn’t care what the security community thinks, but he does care about what the general population thinks. Let’s track his journey a bit to postulate the end game. Now, every step he's taken could be completely natural and passion-driven, I have
HACK Issue 008: Open season on OpenSea, How not to treat developers, and Axonius' 2021 marketing flops and wins Greetings from cold Boise, Idaho. I have a confession to make: January is one of my least favorite months of the year. The holidays are over, the density of the cold is... deeper. It's like the chill is implanted in my bones on January 2nd and I can&
Hacker Education Trends There’s a cybersecurity skills shortage, and lots of companies and creators are working to fill the market demand for high quality content. Last week, I wrote about the Offensive Hacking Education Landscape [https://luketucker.com/offensive-hacking-education-landscape/] and this week I share my thoughts on top trends in the space.
HACK ISSUE 007: Top 10 web vulns of 2021 voting, gnarliest pentest stories, and Leadership according to Marcus Aurelius Happy weekend everyone! One day late this week, the universe didn't want me sending a newsletter yesterday. Got blocked on computer issues and feeling the effects of my COVID booster shot from Thursday afternoon. But Onward... Security tweets and links There's still time to vote for
Offensive Hacking Education Landscape A few weeks ago there was a dust up on the bug bounty and pentesting corner of infosec twitter with certain content and tool creators in the space calling out others. While there are some charlatans, or “grifters” as The Cyber Mentor calls them, there are many great providers of