tjrobinson.net

Home

❯

Kubernetes and Cloud Native Security Associate (KCSA)

Kubernetes and Cloud Native Security Associate (KCSA)

Jul 05, 20261 min read

  • kubernetes
  • certification
  • security
  • KCSA — Linux Foundation Training & Certification
  • KCSA — CNCF
  • KCSA exam prep course — Udemy
  • New Kubernetes Cert: KCSA — DEV Community

Related bookmarks (703)

  • How I Use Every Claude Code Feature as a Security Engineer - Part 1labs.secengai.com · Jul 04, 2026
  • Kubernetes - tips for your CKAD exam by CNCF - Sokubesokube.io · Jul 04, 2026
  • My preparation and tips for the Certified Kubernetes Administrator exam - Daniel's Tech Blogdanielstechblog.io · Jul 04, 2026
  • Acing CKA Exam — Certified Kubernetes Administratorkanger.dev · Jul 04, 2026
  • Ramilito/kubediff: Source VS Deployedgithub.com · Jul 04, 2026
  • Sail Sharp, 9 tips to optimize and secure your .NET containers for Kubernetesmedium.com · Jul 04, 2026
  • AKS Workload Identity Revisited – baeke.infoblog.baeke.info · Jul 04, 2026
  • Kubernetes Workload Identity with AKS – baeke.infoblog.baeke.info · Jul 04, 2026
  • Securing Kubernetes: A Comprehensive Guide to Runtime Security and System Hardeninginstapaper.com · Jul 04, 2026
  • Simulatorgithub.com · Jul 04, 2026
  • Introducing Enhanced Security in Azure Kubernetes Service: Disabling SSH Access on Cluster Nodespixelrobots.co.uk · Jul 04, 2026
  • Kubernetes SecurityContext with practical examples | by Eugene Butan | Marionete | Mediummedium.com · Jul 04, 2026
  • undistro/marvin: Marvin is a CLI tool that scans a k8s cluster by performing CEL expressions to report potential issues, misconfigurations and vulnerabilities.github.com · Jul 04, 2026
  • https://github.com/alcideio/rbac-toolgithub.com · Jul 04, 2026
  • Kubernetes RBAC: Privilege Escalation Exploits and Mitigations | by Seifeddine Rajhi | Mediummedium.com · Jul 04, 2026
  • Azure Kubernetes Service: RBAC options in practice - Microsoft Community Hubtechcommunity.microsoft.com · Jul 04, 2026
  • PaloAltoNetworks/rbac-police: Evaluate the RBAC permissions of Kubernetes identities through policies written in Regogithub.com · Jul 04, 2026
  • cyberark/KubiScan: A tool to scan Kubernetes cluster for risky permissionsgithub.com · Jul 04, 2026
  • jatrost/awesome-kubernetes-threat-detection: A curated list of resources about detecting threats and defending Kubernetes systems.github.com · Jul 04, 2026
  • K8S Threat Modelcloudsecdocs.com · Jul 04, 2026
  • Tactics - Threat Matrix for Kubernetesmicrosoft.github.io · Jul 04, 2026
  • Network Policies: Understanding Kubernetes Network Policiesblog.slycreator.com · Jul 04, 2026
  • acrlabs/simkube: Virtual Kubelet provider for Kubernetes scheduling simulationsgithub.com · Jul 04, 2026
  • aquasecurity/trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and moregithub.com · Jul 04, 2026
  • quay/clair: Vulnerability Static Analysis for Containersgithub.com · Jul 04, 2026
  • WithSecureLabs/IceKubegithub.com · Jul 04, 2026
  • What if your Pods need to trust self-signed certificates?blog.alexellis.io · Jul 04, 2026
  • A Guide to Securing Kubernetes Namespaces | Rapid7 Blograpid7.com · Jul 04, 2026
  • Kubernetes Secret Management: A Comprehensive Guide with AWS Secrets Manager | by Sharon Sahadevan | Mediumsharonsahadevan.medium.com · Jul 04, 2026
  • openclarity/kubeclarity: KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystemsgithub.com · Jul 04, 2026
  • Encrypting Secret data at etcd store on a Minikube K8s Cluster | by Seralahthan | Mediumtechexpertise.medium.com · Jul 04, 2026
  • Kubernetes Exposed: One Yaml away from Disasterblog.aquasec.com · Jul 04, 2026
  • Kubernetes security fundamentals: API Security | Datadog Security Labssecuritylabs.datadoghq.com · Jul 04, 2026
  • bitnami-labs/sealed-secrets: A Kubernetes controller and tool for one-way encrypted Secretsgithub.com · Jul 04, 2026
  • sigstore/cosign: Code signing and transparency for containers and binariesgithub.com · Jul 04, 2026
  • Leveraging Defender for Containers to simplify policy management in your Kubernetes Clusters - Microsoft Community Hubtechcommunity.microsoft.com · Jul 04, 2026
  • Securing container deployments on Azure Kubernetes Service with open-source toolsbuild.microsoft.com · Jul 04, 2026
  • kubernetes-sigs/kube-scheduler-simulator: The simulator for the Kubernetes schedulergithub.com · Jul 04, 2026
  • wagoodman/dive: A tool for exploring each layer in a docker imagegithub.com · Jul 04, 2026
  • Send a Signal to a Kubernetes App: a Non-Root Container Case | Challengeinstapaper.com · Jul 04, 2026
  • Kubernetes Virtual Book Clubcommunity.cncf.io · Jul 04, 2026
  • Argo CD - Declarative GitOps CD for Kubernetesargo-cd.readthedocs.io · Jul 04, 2026
  • iximiuz/kexp: k'exp - Kubernetes Explorergithub.com · Jul 04, 2026
  • Deploy containers by using Azure Kubernetes Service - Applied Skills | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Tetragon - eBPF-based Security Observability and Runtime Enforcementtetragon.io · Jul 04, 2026
  • Virtual Patching Best Practicesowasp.org · Jul 04, 2026
  • Performing a Rolling Updatekubernetes.io · Jul 04, 2026
  • Deliver apps from code to cloud with Azure Kubernetes Servicebuild.microsoft.com · Jul 04, 2026
  • Explore the Azure Kubernetes Service cluster and node architecture - Training | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • "Hacking Container Security" - Super Cyber Friday - crowdcastcrowdcast.io · Jul 04, 2026
  • learnk8s - Kubernetes Researchlearnk8s.io · Jul 04, 2026
  • How to use Gatekeeper | Gatekeeperopen-policy-agent.github.io · Jul 04, 2026
  • Introducing the Azure Linux container host for AKStechcommunity.microsoft.com · Jul 04, 2026
  • AKS (Kubernetes) day-2 operations guide - Azure Architecture Center | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Must Read Free Kubernetes Books ~ Bilgin Ibryam (@bibryam)ofbizian.com · Jul 04, 2026
  • https://github.com/GoogleCloudPlatform/microservices-demogithub.com · Jul 04, 2026
  • Minikubeminikube.sigs.k8s.io · Jul 04, 2026
  • Rancher Desktoprancherdesktop.io · Jul 04, 2026
  • K9sk9scli.io · Jul 04, 2026
  • Azure Container Storage: A New Dawn in Kubernetes Storage Solutionsmedium.com · Jul 04, 2026
  • K8sGPTk8sgpt.ai · Jul 04, 2026
  • Udemy - Kubernetes Certified Application Developer (CKAD) with Testsudemy.com · Jul 04, 2026
  • The Azure Kubernetes Service Checklist - ✨ Be ready for production ✨the-aks-checklist.com · Jul 04, 2026
  • Shostack + Associates Tabletop Security Games + Cardsshostack.org · Jul 04, 2026
  • Dread (forum) - Wikipediaen.wikipedia.org · Jul 04, 2026
  • Seedata.ioseedata.io · Jul 04, 2026
  • Microsoft Azure Managed Identity Deep Dive - YouTubeyoutube.com · Jul 04, 2026
  • Introducing GraphRunner: A Post-Exploitation Toolset for Microsoft 365 - Black Hills Information Securityblackhillsinfosec.com · Jul 04, 2026
  • CL0P Seeds ^\_- Gotta Catch Em All!unit42.paloaltonetworks.com · Jul 04, 2026
  • Cybersecurity History Podcast | Malicious Lifemalicious.life · Jul 04, 2026
  • OpenYOLO for Androidopenid.net · Jul 04, 2026
  • Public Warning Solutions – Cell Broadcast and Beyondbrighttalk.com · Jul 04, 2026
  • AZ-500: Microsoft Azure Security Technologies Study Guidetechcommunity.microsoft.com · Jul 04, 2026
  • Corelight: Evidence-Based NDR and Threat Hunting Platformcorelight.com · Jul 04, 2026
  • Securing Password Management Using AWS Nitro Enclaves with Dashlane | Case Study | AWSaws.amazon.com · Jul 04, 2026
  • Illustrated DPoP (OAuth Access Token Security Enhancement) | by Takahiko Kawasaki | Mediumdarutk.medium.com · Jul 04, 2026
  • Best Practices for Developer-Centric Application Security Testing - Bright Securitybrightsec.com · Jul 04, 2026
  • jwt-cli - npmnpmjs.com · Jul 04, 2026
  • Quick Start - tfsecaquasecurity.github.io · Jul 04, 2026
  • What is a Configuration Management Database (CMDB)? - ServiceNowservicenow.com · Jul 04, 2026
  • x1trap/websec-answers: Websec interview questions by tib3rius answeredgithub.com · Jul 04, 2026
  • Detect threats using Microsoft Graph activity logs - Part 1 - Cloudbrotherscloudbrothers.info · Jul 04, 2026
  • Wiz | Secure Everything You Build and Run in the Cloudwiz.io · Jul 04, 2026
  • “EtherHiding” — Hiding Web2 Malicious Code in Web3 Smart Contracts | by Guardio | Oct, 2023 | Mediumlabs.guard.io · Jul 04, 2026
  • NCSC Annual Review 2023 - NCSC.GOV.UKncsc.gov.uk · Jul 04, 2026
  • GitHub repos bombarded by info-stealing commits masked as Dependabotbleepingcomputer.com · Jul 04, 2026
  • Microsoft identity platform and OAuth 2.0 authorization code flow - Microsoft Entra | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • New Microsoft identity and data protection capabilities to accelerate CMMC compliance for the Defense Industrial Base | Microsoft Security Blogmicrosoft.com · Jul 04, 2026
  • TryHackMe | Cyber Security Trainingtryhackme.com · Jul 04, 2026
  • Taming Secrets Sprawl with Doppler and GitGuardian - YouTubeyoutube.com · Jul 04, 2026
  • Az Maskchrome.google.com · Jul 04, 2026
  • How managed identities for Azure resources work with Azure virtual machines - Microsoft Entra | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Azure DevOps agents on AKS with workload identity - DEV Communitydev.to · Jul 04, 2026
  • Rogue IT security worker who impersonated ransomware gang is sentenced to jail • Graham Cluleygrahamcluley.com · Jul 04, 2026
  • 10 ways SecOps can strengthen cybersecurity with ChatGPT | VentureBeatventurebeat.com · Jul 04, 2026
  • Use Azure Functions to Remove Unauthorized Role Assignments - Microsoft Community Hubtechcommunity.microsoft.com · Jul 04, 2026
  • What's new? Release notes - Microsoft Entra | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • IAM vs PAM vs PIM: The Difference Explainedmsp360.com · Jul 04, 2026
  • CyberThreatcyberthreat23.com · Jul 04, 2026
  • Cybersecurity Framework | NISTnist.gov · Jul 04, 2026
  • DevSecOps Lifecycle Coverage with Snyk | Dynatrace Hubdynatrace.com · Jul 04, 2026
  • Is Your Peloton Attracting Security Threats? - Check Point Blogblog.checkpoint.com · Jul 04, 2026
  • Token theft playbook | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Experts Uncover How Cybercriminals Could Exploit Microsoft Entra ID for Elevated Privilegethehackernews.com · Jul 04, 2026
  • The ISF is a leading authority on information security and risk management - Information Security Forumsecurityforum.org · Jul 04, 2026
  • Azure Tenant Security Solution (AzTS)github.com · Jul 04, 2026
  • How to build a strong identity foundation - Microsoft Security Blogmicrosoft.com · Jul 04, 2026
  • Preparing for Quantum-Safe Cryptography - NCSC.GOV.UKncsc.gov.uk · Jul 04, 2026
  • My NCSC Home - My NCSCmy.ncsc.gov.uk · Jul 04, 2026
  • Have Your Secrets Leaked? It’s time to find out! | GitGuardianapp.livestorm.co · Jul 04, 2026
  • OWASP Top 10: Server Side Request Forger - Ep10brighttalk.com · Jul 04, 2026
  • Google Cloud Cybersecurity Forecast 2024 - EMEAbrighttalk.com · Jul 04, 2026
  • Introducing Aladdin - LRQA Nettitude Labslabs.nettitude.com · Jul 04, 2026
  • synacktiv/nord-stream: Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports Azure DevOps, GitHub and GitLab.github.com · Jul 04, 2026
  • The Art of Digital Forensics Report Writing | LinkedInlinkedin.com · Jul 04, 2026
  • Lab Guide - AKS Workload Managed Identitytechcommunity.microsoft.com · Jul 04, 2026
  • C2 - Hak5 Cloud Command and Controlshop.hak5.org · Jul 04, 2026
  • idPowerToysidpowertoys.com · Jul 04, 2026
  • A developer on my team accidentally published a repo under his personal account on BitBucket. It was public for 10 minutes. How worried should I be about the contents leaking? : r/sysadminreddit.com · Jul 04, 2026
  • Introduction - Azure AD Workload Identityazure.github.io · Jul 04, 2026
  • Security policies - Snyk User Docsdocs.snyk.io · Jul 04, 2026
  • inAppBrowser.cominappbrowser.com · Jul 04, 2026
  • (3) Best Practices with Organizing Results in Snyk - YouTubeyoutube.com · Jul 04, 2026
  • Introduction - Azure AD Workload Identityazure.github.io · Jul 04, 2026
  • BSides / FrontPagesecuritybsides.com · Jul 04, 2026
  • docker scout | Docker Documentationdocs.docker.com · Jul 04, 2026
  • Article Listing | Datadog Security Labssecuritylabs.datadoghq.com · Jul 04, 2026
  • Hosts Search - Censyssearch.censys.io · Jul 04, 2026
  • mattnotmax/cyberchef-recipes: A list of cyber-chef recipes and curated linksgithub.com · Jul 04, 2026
  • Redacting sensitive data in logs with Microsoft.Extensions.Compliance.Redactionandrewlock.net · Jul 04, 2026
  • WebAuthn.iowebauthn.io · Jul 04, 2026
  • Troubleshoot access, permission issues - Azure DevOps | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Policy Conflict in Bitlocker policy : r/Intunereddit.com · Jul 04, 2026
  • DevOps Security Workbook - Microsoft Community Hubtechcommunity.microsoft.com · Jul 04, 2026
  • Integrate security into your developer workflow with GitHub Advanced Security for Azure DevOps - Azure DevOps Blogdevblogs.microsoft.com · Jul 04, 2026
  • Beyond the Code / SBOM: Supply Chain Securityslides.anantshri.info · Jul 04, 2026
  • Learn about using Endpoint Privilege Management with Microsoft Intune | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Microsoft Intune Suite - Endpoint Privilege Management Elevation Settings - YouTubeyoutube.com · Jul 04, 2026
  • rmbolger/Posh-ACME: PowerShell module and ACME client to create certificates from Let's Encrypt (or other ACME CA)github.com · Jul 04, 2026
  • Advent of Cyber 2023tryhackme.com · Jul 04, 2026
  • secmerc/materialize-threatsgithub.com · Jul 04, 2026
  • New Microsoft Incident Response team guide shares best practices for security teams and leaders | Microsoft Security Blogmicrosoft.com · Jul 04, 2026
  • Announcing .NET Chiseled Containers - .NET Blogdevblogs.microsoft.com · Jul 04, 2026
  • InfoCon Hacking and Security Conference Archivesinfocon.org · Jul 04, 2026
  • Infosec/hacking videos recorded by Cooper (@Ministraitor)administraitor.video · Jul 04, 2026
  • Quick Wins I OWASP Top Ten for .NET Developers in 30 Minutes - YouTubeyoutube.com · Jul 04, 2026
  • Microsoft OneDrive and Teams: Harden Your M365 Applicationsbrighttalk.com · Jul 04, 2026
  • Business Email Compromise: How AI Has Changed the Playing Fieldbrighttalk.com · Jul 04, 2026
  • ​​Microsoft Azure Innovation Forum: Drive application innovation at scale with cloud-native architectures ​ | Watch Nowinfo.microsoft.com · Jul 04, 2026
  • JSON Web Token (JWTs) are Dangerousbrighttalk.com · Jul 04, 2026
  • HSMs Decoded: A Complete Guide to Hardware Security Modules and Their Deploymentbrighttalk.com · Jul 04, 2026
  • Goodbye, Passwords. Hello, Passkeys!brighttalk.com · Jul 04, 2026
  • Redefining Digital Personalization with CIAMbrighttalk.com · Jul 04, 2026
  • Microsoft Webinar: Power Platform – Security, Governance & Adoption | Watch Nowinfo.microsoft.com · Jul 04, 2026
  • 37C3: Unlocked - media.ccc.demedia.ccc.de · Jul 04, 2026
  • Analyzing Sensitive Data: Privacy, Ethics, and Security Considerationsbrighttalk.com · Jul 04, 2026
  • HAR Sanitizerhar-sanitizer.pages.dev · Jul 04, 2026
  • GRC | ValiDrivegrc.com · Jul 04, 2026
  • CompTIA Security+ (SY0-601) Path | Pluralsightapp.pluralsight.com · Jul 04, 2026
  • Are You Ready for Test Day? - Get Certified Get Aheadblogs.getcertifiedgetahead.com · Jul 04, 2026
  • Course SC-900T00: Microsoft Security, Compliance, and Identity Fundamentalsdocs.microsoft.com · Jul 04, 2026
  • OWASP Juice Shop | OWASP Foundationowasp.org · Jul 04, 2026
  • Google Online Security Blog: Announcing the deps.dev API: critical dependency data for secure supply chainssecurity.googleblog.com · Jul 04, 2026
  • Cyber Security Course & Training | Cyber warfare Labscyberwarfare.live · Jul 04, 2026
  • Interactive Online Malware Analysis Sandbox - ANY.RUNapp.any.run · Jul 04, 2026
  • Inside the Microsoft Cyber Defence Operations Centre | Microsoftinfo.microsoft.com · Jul 04, 2026
  • Announcing Microsoft Authentication Library for .NET 4.54.0, with General Availability of Managed Identity APIs | Microsoft Entra Identity Developer Blogdevblogs.microsoft.com · Jul 04, 2026
  • nettitude/Aladdingithub.com · Jul 04, 2026
  • Considerations for Securing your Applications - Microsoft Industry Blogs - United Kingdomcloudblogs.microsoft.com · Jul 04, 2026
  • Experts Uncover Weaknesses in PowerShell Gallery Enabling Supply Chain Attacksthehackernews.com · Jul 04, 2026
  • mTLS: When certificate authentication is done wrong - The GitHub Bloggithub.blog · Jul 04, 2026
  • How You Should Not Remediate Your Hardcoded Secretscrowdcast.io · Jul 04, 2026
  • Entro-secret-protection-White-paper-entro.pdfentro.security · Jul 04, 2026
  • Best Practices for Developer-Centric Application Security Testing - Bright Securityinstapaper.com · Jul 04, 2026
  • AppSec Fundamentalscommunity.wehackpurple.com · Jul 04, 2026
  • Tide helps small businesses do business securely with Wiz | Wizwiz.io · Jul 04, 2026
  • Microsoft Defender for Identity entity tags in Microsoft 365 Defender | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • ATT&CK® Navigatormitre-attack.github.io · Jul 04, 2026
  • GitHub - gchq/CyberChef: The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysisgithub.com · Jul 04, 2026
  • SigmaHQ/sigma-specification: Sigma rule specificationgithub.com · Jul 04, 2026
  • Leading and growing a successful cybersecurity team: Where science meets art - SASIGthesasig.com · Jul 04, 2026
  • Public preview of Workload identity federation for Azure Pipelines - Azure DevOps Blogdevblogs.microsoft.com · Jul 04, 2026
  • Microsoft mitigated exposure of internal information in a storage account due to overly-permissive SAS token | MSRC Blog | Microsoft Security Response Centermsrc.microsoft.com · Jul 04, 2026
  • Password protection in Microsoft Entra ID - Microsoft Entra | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Phoenix Security - FIX Vulnerability with context from appsec to cloud securityphoenix.security · Jul 04, 2026
  • Snyk | AI Hallucinations & Manipulation: How to Use AI Coding Tools Securelygo.snyk.io · Jul 04, 2026
  • Infracost: The cloud's checkout screen | Infracostinfracost.io · Jul 04, 2026
  • Access Managed Identity from container inside VM - Azure - GeralexGRblog.geralexgr.com · Jul 04, 2026
  • The Guide to Azure Network Security Group | CloudBolt Softwarecloudbolt.io · Jul 04, 2026
  • Web Security Academy: Free Online Training from PortSwiggerportswigger.net · Jul 04, 2026
  • UK InfoSec Community - start.mestart.me · Jul 04, 2026
  • Ctrl+Alt+Azure | 203 - PIM, PAM and PAW - what and how in Azure?share.transistor.fm · Jul 04, 2026
  • How Azure AD Password Protection Identifies a “Bad” Passwordenzoic.com · Jul 04, 2026
  • What is Azure attribute-based access control (Azure ABAC)? | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Enable infrastructure encryption for double encryption of data - Azure Storage | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Enable just-in-time access on VMs - Microsoft Defender for Cloud | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Understand just-in-time virtual machine access - Microsoft Defender for Cloud | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Security Industry 101: A 'Crash Course' for Security Newbiesbrighttalk.com · Jul 04, 2026
  • Why is Signal asking users to set a PIN, or “A few thoughts on Secure Value Recovery” – A Few Thoughts on Cryptographic Engineeringblog.cryptographyengineering.com · Jul 04, 2026
  • The Hidden Complexity of Vulnerability Remediation | Cyentiacyentia.com · Jul 04, 2026
  • Bug Alertbugalert.org · Jul 04, 2026
  • The DEF CON® Media Server - Archives of the conferencesmedia.defcon.org · Jul 04, 2026
  • Thread by @\_wald0 on Thread Reader App – Thread Reader Appthreadreaderapp.com · Jul 04, 2026
  • A Realistic Look at Implications of ChatGPT for Cybercrimemalwaretech.com · Jul 04, 2026
  • Protective Domain Name Service (PDNS) - NCSC.GOV.UKncsc.gov.uk · Jul 04, 2026
  • vulhub/vulhub: Pre-Built Vulnerable Environments Based on Docker-Composegithub.com · Jul 04, 2026
  • The Sleuth Kitsleuthkit.org · Jul 04, 2026
  • Free: Dastardly from Burp Suite | Blog - PortSwiggerportswigger.net · Jul 04, 2026
  • Hunted | All 4channel4.com · Jul 04, 2026
  • Learn about Windows security baselines you can deploy with Microsoft Intune | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Banking Security: Safeguarding your Data from external and internal threatsbrighttalk.com · Jul 04, 2026
  • Untangling Azure Active Directory Principals & Access Permissions · csandker.iocsandker.io · Jul 04, 2026
  • New! AI-Driven Adaptive Learning for CCSP from (ISC)²brighttalk.com · Jul 04, 2026
  • Public Preview: GitHub Advanced Security for Azure DevOps | Azure updates | Microsoft Azureazure.microsoft.com · Jul 04, 2026
  • Working with the Azure AD entitlement management API - Microsoft Graph v1.0 | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • Inside the Mind of an APTbrighttalk.com · Jul 04, 2026
  • OAuth 2.0 and OpenID Connect (in plain English) - YouTubeyoutube.com · Jul 04, 2026
  • Hacking JWT Tokens: The None Algorithm | by Shivam Bathla | Pentester Academy Blogblog.pentesteracademy.com · Jul 04, 2026
  • Home - (ISC)² Communitycommunity.isc2.org · Jul 04, 2026
  • OWASP Membership Information & Benefits | OWASP Foundationowasp.org · Jul 04, 2026
  • The Digital Bank: Build a data-driven customer experience on the open lakehousebrighttalk.com · Jul 04, 2026
  • Navigating the Cloud Maze:Protecting Your Workloads in a Multi-Cloud Environmentbrighttalk.com · Jul 04, 2026
  • How to leverage full cloud adoption in paymentsbrighttalk.com · Jul 04, 2026
  • Microsoft Security Immersion Workshop Secure Hybrid Cloudpartner.microsoft.com · Jul 04, 2026
  • MITRE Engage™ | An Adversary Engagement Framework from MITREengage.mitre.org · Jul 04, 2026
  • D3FEND Matrix | MITRE D3FEND™d3fend.mitre.org · Jul 04, 2026
  • MITRE ATT&CK®attack.mitre.org · Jul 04, 2026
  • Diffie-hellman key exchange (video) | Khan Academykhanacademy.org · Jul 04, 2026
  • Cyberseekcyberseek.org · Jul 04, 2026
  • 0-Day Clothing: T-Shirts for Hackers, Engineers & Geekszerodayclothing.com · Jul 04, 2026
  • NeuraLegion/sectester-js-demo: This is a demo project for the SecTester JS SDK framework, with some installation and usage examplesgithub.com · Jul 04, 2026
  • Kali Linux Desktop on Windows Subsystem for Linux - CodeProjectcodeproject.com · Jul 04, 2026
  • JWT attacks | Web Security Academyportswigger.net · Jul 04, 2026
  • OWASP API Top 10 Vulnerabilities and How to Prevent Thembrightsec.com · Jul 04, 2026
  • Log Management Fundamentals for Cybersecurity Engineers | by Andre Camillo | Microsoft Azure | Jul, 2022 | Mediummedium.com · Jul 04, 2026
  • How to use MITRE’s Top ATT&CK Techniques tool — MITRE tools for Threat Informed Defense | by Andre Camillo | Microsoft Azure | Aug, 2022 | Mediummedium.com · Jul 04, 2026
  • Microsoft Entra Verified ID now generally available - Microsoft Tech Communitytechcommunity.microsoft.com · Jul 04, 2026
  • Microsoft Certified: Cybersecurity Architect Expert - Certifications | Microsoft Docsdocs.microsoft.com · Jul 04, 2026
  • Security logging and monitoring failureslinkedin.com · Jul 04, 2026
  • CC Study Group - (ISC)² Communitycommunity.isc2.org · Jul 04, 2026
  • Daniel Kelley: Top 30 Cybersecurity Posts Swipe Filegold-marten-204.notion.site · Jul 04, 2026
  • AI-powered Bing Chat spills its secrets via prompt injection attack [Updated] | Ars Technicaarstechnica.com · Jul 04, 2026
  • OWASP AI Security and Privacy Guide | OWASP Foundationowasp.org · Jul 04, 2026
  • Security Certification Roadmap - Paul Jerimy Mediapauljerimy.com · Jul 04, 2026
  • Ship-It safely with GitHub Advanced Securitybuild.microsoft.com · Jul 04, 2026
  • Hardening Windows Clients with Microsoft Intune and Defender for Endpoint - Microsoft Community Hubtechcommunity.microsoft.com · Jul 04, 2026
  • Connect, secure, and simplify your network resources with Azure Virtual Network Manager | Azure Blog and Updates | Microsoft Azureazure.microsoft.com · Jul 04, 2026
  • Secure SDLC | Secure Software Development Life Cycle | Snyksnyk.io · Jul 04, 2026
  • Deploying ASP.NET Core applications to Kubernetesandrewlock.net · Jul 04, 2026
  • Secrets Management - OWASP Cheat Sheet Seriescheatsheetseries.owasp.org · Jul 04, 2026
  • Connect Microsoft Sentinel to STIX/TAXII threat intelligence feedslearn.microsoft.com · Jul 04, 2026
  • Google Online Security Blog: Capslock: What is your code really capable of?security.googleblog.com · Jul 04, 2026
  • Crash-only software: More than meets the eye [LWN.net]lwn.net · Jul 04, 2026
  • PentesterLab: Learn Web Penetration Testing: The Right Waypentesterlab.com · Jul 04, 2026
  • Running DAST in a CI/CD, Successfullyacademy.wehackpurple.com · Jul 04, 2026
  • Social Engineering Kill–Chain: Predicting, Minimizing & Disrupting Attack Verticalsahead.feedly.com · Jul 04, 2026
  • Security Driven .NETsecuritydriven.net · Jul 04, 2026
  • Motivating Jenny: Developer Security Toolkitmotivatingjenny.org · Jul 04, 2026
  • Recognizing & Rewarding Security Champions – We Hack Purplewehackpurple.com · Jul 04, 2026
  • (ISC)² News and Insightsisc2.org · Jul 04, 2026
  • (ISC)² InfoSecurity Professionalisc2.org · Jul 04, 2026
  • Cloud native Data Loss Prevention | The future of data securitytechcommunity.microsoft.com · Jul 04, 2026
  • When MFA is not enough: 5 easy and essential steps for hardening our identitiessecure.microsoft.com · Jul 04, 2026
  • Titan in depth: Security in plaintext | Google Cloud Blogcloud.google.com · Jul 04, 2026
  • How to refresh Azure Identity Governance access packages after renaming Azure Active Directory groups – Mediummedium.com · Jul 04, 2026
  • Implement Microsoft Sentinel and Microsoft 365 Defender for Zero Trust | Microsoft Learnlearn.microsoft.com · Jul 04, 2026
  • tomwechsler/Microsoft_Cloud_Security: Everything about Microsoft Cloud Security!github.com · Jul 04, 2026
  • Cloudflare Radarradar.cloudflare.com · Jul 04, 2026
  • Persistence via App Registration in Entra IDcyberdom.blog · Jul 04, 2026
  • How to Conduct Person of Interest Investigations Using OSINT & Maltego - Maltegomaltego.com · Jul 04, 2026
  • ONYPHE | Attack Surface Management & Cyber Defense Search Engineonyphe.io · Jul 04, 2026
  • digininja/DVWA: Damn Vulnerable Web Application (DVWA)github.com · Jul 04, 2026
  • BinaryEdgebinaryedge.io · Jul 04, 2026
  • Free developer security education lessons | Snyk Learnlearn.snyk.io · Jul 04, 2026
  • juice-shop/juice-shop: OWASP Juice Shop: Probably the most modern and sophisticated insecure web applicationgithub.com · Jul 04, 2026
  • ISC(2) Skill Builderslearn.isc2.org · Jul 04, 2026
  • Snyk Learn - Trusted Developer Security Training | Snyksnyk.io · Jul 04, 2026
  • Axoniusaxonius.com · Jul 04, 2026
  • https://sigmahq.io/sigmahq.io · Jul 04, 2026
  • badssl.combadssl.com · Jul 04, 2026
  • HackmichNet/AzTokenFindergithub.com · Jul 04, 2026
  • Snort - Network Intrusion Detection & Prevention Systemsnort.org · Jul 04, 2026
  • LearningKijo (Kijo)github.com · Jul 04, 2026
  • GreyNoise Visualizerviz.greynoise.io · Jul 04, 2026
  • crt.sh | Certificate Searchcrt.sh · Jul 04, 2026
  • WiGLE: Wireless Network Mappingwigle.net · Jul 04, 2026
  • ReadThenBurnreadthenburn.fnkr.net · Jul 04, 2026
  • WhatsMyName Webwhatsmyname.app · Jul 04, 2026
  • Homepage - Maltegomaltego.com · Jul 04, 2026
  • OWASP Nettacker | OWASP Foundationowasp.org · Jul 04, 2026
  • https://dfir.blog/unfurl/dfir.blog · Jul 04, 2026
  • techiescamp/kubernetes-learning-path: A roadmap to learn Kubernetes from scratch (Beginner to Advanced level)github.com · Jul 04, 2026
  • openappsec/waf-comparison-project: Testing datasets and tools to compare WAF efficacygithub.com · Jul 04, 2026
  • ovotech/gitoops: all paths lead to cloudsgithub.com · Jul 04, 2026
  • Azure/kubelogin: A Kubernetes credential (exec) plugin implementing azure authenticationgithub.com · Jul 04, 2026
  • synacktiv/nord-stream: Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by d...github.com · Jul 04, 2026
  • mandiant/capa: The FLARE team's open-source tool to identify capabilities in executable files.github.com · Jul 04, 2026
  • Bunny Shield: Security simplifiedbunny.net · Jul 01, 2026
  • So Long, And No Thanks for the Externalities: The Rational Rejection of Security Advice by Usersmicrosoft.com · Jun 20, 2026
  • OWASP/cve-lite-cli: Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix, JSON output, and practical remediation guidance.github.com · Jun 20, 2026
  • AWS Certified Solutions Architect Associate (SAA-C03) Resources : AWSCertificationsreddit.com · Jun 08, 2026
  • From leaked aws key to data exfiltration in seconds are we ready bcmedium.com · Jun 05, 2026
  • Automating Security Operations with AI: Triaging Renovate PRs | Marco Lancini's Blogblog.marcolancini.it · Jun 03, 2026
  • Security Checklist for GitHub Actionsaikido.dev · May 26, 2026
  • microsoft/AntiSSRFgithub.com · May 24, 2026
  • FiloSottile/agegithub.com · May 22, 2026
  • DSOMMdsomm.owasp.org · May 14, 2026
  • GitHub Actions Security Pt 1: Attacks & Defenses | Wiz Blogwiz.io · May 11, 2026
  • Dependency Cooldowns - Dependency Cooldownscooldowns.dev · May 11, 2026
  • Who Created That Service Principal? Tracing It Back with Microsoft Graphshankuehn.io · May 11, 2026
  • AWS Credential Isolation for Local AI Agentsengseclabs.com · May 10, 2026
  • FilippoBau/depcut: Cut Dependabot noise with AI-powered symbol-level triagegithub.com · May 10, 2026
  • Practical Package Security: The Unofficial Guide | Wiz Blogwiz.io · May 10, 2026
  • openai/privacy-filter: OpenAI Privacy Filtergithub.com · May 10, 2026
  • Introducing deepsecvercel.com · May 10, 2026
  • xssdoctor/cspt_research: this is everythinggithub.com · May 09, 2026
  • Hack the AI agent: Build agentic AI security skills with the GitHub Secure Code Game - The GitHub Bloggithub.blog · Apr 15, 2026
  • AWS Security Agentaws.amazon.com · Apr 06, 2026
  • Securing the open source supply chain across GitHub - The GitHub Bloggithub.blog · Apr 05, 2026
  • What's coming to our GitHub Actions 2026 security roadmap - The GitHub Bloggithub.blog · Apr 05, 2026
  • Learning to Trust AI Agents with Automation w/ Ethan and Derekyoutube.com · Mar 29, 2026
  • IAMTrail - AWS Managed Policy Changes Archiveiamtrail.com · Mar 29, 2026
  • Securing our codebase with autonomous agents · Cursorcursor.com · Mar 28, 2026
  • Why Codex Security Doesn’t Include a SAST Reportopenai.com · Mar 28, 2026
  • praetorian-inc/trajangithub.com · Mar 26, 2026
  • CyberGym: Evaluating AI Agents' Real-World Cybersecurity Capabilities at Scalecybergym.io · Mar 20, 2026
  • Security in the agentic era: A new paradigm | Microsoft Community Hubtechcommunity.microsoft.com · Mar 16, 2026
  • ThinkstScapes Q hiress3.eu-west-1.amazonaws.com · Mar 14, 2026
  • OWASP Devsecops Maturity Model | OWASP Foundationowasp.org · Mar 09, 2026
  • OAuth is Broken Without This | Meet PKCEyoutube.com · Mar 06, 2026
  • AppSec Has No Silver Bullet: Better Together with GitHub Advanced Security & Semgrepyoutube.com · Feb 28, 2026
  • Samsung/CredData: CredData is a set of files including credentials in open source projects. CredData includes suspicious lines with manual review results and more information such as credential types for each suspicious line. CredData can be used to develop new tools or improve existing tools. Furthermore, using the benchmark result of the CredData, users can choose a proper tool among open source credential scanning tools according to their use case.github.com · Feb 28, 2026
  • Samsung/CredSweeper: CredSweeper is a tool to detect credentials in any directories or files. CredSweeper could help users to detect unwanted exposure of credentials (such as token, passwords, api keys etc.) in advance. By scanning lines, filtering, and using AI model as option, CredSweeper reports lines with possible credentials, where the line is, and expected type ogithub.com · Feb 28, 2026
  • praetorian-inc/titus: High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 459 detection rules with live credential validation.github.com · Feb 28, 2026
  • The Rise of the AI Security Engineer: A New Discipline for an AI-Native World | Snyksnyk.io · Feb 27, 2026
  • Cato Networks: World’s Leading Single-Vendor SASE Platformcatonetworks.com · Feb 27, 2026
  • The Internet Was Weeks Away From Disaster and No One Knewyoutube.com · Feb 27, 2026
  • DC4420dc4420.org · Feb 26, 2026
  • Unveiling Bagel: Why Your Developer's Laptop is the Softest Target in Your Supply Chain | BoostSecurity Labslabs.boostsecurity.io · Feb 19, 2026
  • safedep/pmg: PMG protects developers from getting hacked by malicious open source packages. Stop the next Shai-Hulud or S1ngularity before it happens.github.com · Feb 19, 2026
  • wardgate/wardgate: Give AI agents API access without giving them your credentials. Reduce the blast radius!github.com · Feb 19, 2026
  • Incident Management and the Crowdstrike Event with Liam Westleyrunasradio.com · Feb 08, 2026
  • PromptIntel - IoPC Registrypromptintel.novahunting.ai · Feb 08, 2026
  • PromptIntel - IoPC Registrypromptintel.novahunting.ai · Feb 08, 2026
  • Maldev-Academy/DumpBrowserSecrets: Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from modern Chromium-based and Gecko-based browsers (Chrome, Microsoft Edge, Firefox, Opera, Opera GX, and Vivaldi)github.com · Feb 08, 2026
  • SITF: The First Threat Framework for SDLC Infrastructure | Wiz Blogwiz.io · Feb 08, 2026
  • Scorecarding Securityramimac.me · Feb 08, 2026
  • Why You WILL Pass the CISSP Examyoutube.com · Feb 08, 2026
  • VSCan | VSCode Extension Security Analyzervscan.dev · Feb 06, 2026
  • ClawdHubclawdhub.com · Jan 27, 2026
  • boostsecurityio/poutine: boostsecurityio/poutinegithub.com · Jan 27, 2026
  • zalexdev/wpair-app: WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This vulnerability affects millions of Bluetooth audio devices worldwide, allowing unauthorized pairing and potential microphone access without user consent.github.com · Jan 21, 2026
  • The CTF Primerprimer.picoctf.org · Jan 20, 2026
  • The Future of Secure Access with Managed Identities and Workload Identity Federationmedium.com · Jan 18, 2026
  • potatoqualitee/eol-dr: 🕊️ A crowd-sourced guide to help techs help their non-tech spouses / partners / parents / kids when we are at the end-of-lifegithub.com · Jan 12, 2026
  • praetorian-inc/noseyparker: Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.github.com · Jan 09, 2026
  • steveteuber/kubectl-graph: A kubectl plugin to visualize Kubernetes resources and relationships.github.com · Jan 07, 2026
  • Loginlab00.sqrsec.com · Jan 05, 2026
  • Cloud Labs Instructions - SOC Core Skillsdocs.google.com · Dec 27, 2025
  • Dementia Safeguarding Scheme using NFC - Seritagseritag.com · Dec 27, 2025
  • zh54321/EntraTokenAid: A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokensgithub.com · Dec 16, 2025
  • Tracee - Aquaaquasec.com · Dec 16, 2025
  • OpenCanaryopencanary.readthedocs.io · Dec 14, 2025
  • JUMPSEClabs.jumpsec.com · Dec 14, 2025
  • Secure external attachments with Purview encryption | Microsoft Community Hubtechcommunity.microsoft.com · Dec 06, 2025
  • Demystifying JOSE, the JWT Family: JWS, JWE, JWA, and JWK Explainedauth0.com · Dec 06, 2025
  • I was wrong about DevSecOpsblog.ibexcore.com · Dec 06, 2025
  • nwipegithub.com · Dec 06, 2025
  • aaru-dps/Aaru: Aaru Data Preservation Suitegithub.com · Dec 06, 2025
  • Blog - SpecterOpsspecterops.io · Dec 06, 2025
  • Analyze syslog messages with Seqdatalust.co · Dec 06, 2025
  • ASP.NET Core CSRF defence with Antiforgery | DotNetCurrydotnetcurry.com · Dec 06, 2025
  • PartedMagic - Partitioning, Cloning, Rescue, and Erasing.partedmagic.com · Dec 06, 2025
  • Windows File Recovery - Free download and install on Windows | Microsoft Storeapps.microsoft.com · Dec 06, 2025
  • Secure Erasecmrr.ucsd.edu · Dec 06, 2025
  • ngrokngrok.com · Dec 05, 2025
  • justeattakeaway/httpclient-interception: A .NET library for intercepting server-side HTTP requestsgithub.com · Dec 05, 2025
  • NetSPI SQL Injection Wikisqlwiki.netspi.com · Dec 05, 2025
  • Create Amazing Password Formschromium.org · Dec 05, 2025
  • Katzecure | Cat proof your garden without compromising the aestheticskatzecure.com · Dec 05, 2025
  • Get Certified Get Aheadgetcertifiedgetahead.com · Dec 05, 2025
  • Microsoft Defender Activity Logsecurity.microsoft.com · Dec 05, 2025
  • How GitHub's agentic security principles make our AI agents as secure as possible - The GitHub Bloggithub.blog · Nov 29, 2025
  • GreyNoise IP Checkcheck.labs.greynoise.io · Nov 28, 2025
  • Parrot Securityparrotsec.org · Nov 28, 2025
  • State of AI in Security & Development 2026: CISOs & Devs Respond to AI Risksaikido.dev · Nov 27, 2025
  • Sygnia’s Investigation into the Bybit Hack: What We Know So Farsygnia.co · Nov 25, 2025
  • My AWS Account Got Hacked - Here is What Happenedzviwex.com · Nov 21, 2025
  • Nginx Proxy Managernginxproxymanager.com · Nov 15, 2025
  • Disrupting the first reported AI-orchestrated cyber espionage campaignanthropic.com · Nov 14, 2025
  • Trainingtinyshellscript.com · Nov 14, 2025
  • BBC Sounds - Cyber Hack - Available Episodesbbc.co.uk · Nov 13, 2025
  • Turn off Sky Q WiFi hotspotssky.com · Nov 12, 2025
  • IriusRisk Academyiriusrisk.academy · Nov 11, 2025
  • Firecrackerfirecracker-microvm.github.io · Nov 04, 2025
  • SpecterOps/AzureHound: Azure Data Exporter for BloodHoundgithub.com · Oct 24, 2025
  • Public Buckets by Grayhatwarfarebuckets.grayhatwarfare.com · Oct 24, 2025
  • rodnt/quickaz: Quickly enumerate the attack surfaces on Azuregithub.com · Oct 24, 2025
  • Canarytokenscanarytokens.org · Oct 22, 2025
  • NCSC Annual Review 2025ncsc.gov.uk · Oct 19, 2025
  • Supply Chain Risk in VSCode Extension Marketplaces | Wiz Blogwiz.io · Oct 16, 2025
  • Semgrep Playgroundsemgrep.dev · Oct 13, 2025
  • Use Image Cleaner on Azure Kubernetes Service (AKS) - Azure Kubernetes Servicelearn.microsoft.com · Oct 11, 2025
  • Introduction to Azure Kubernetes Service (AKS) Automatic - Azure Kubernetes Servicelearn.microsoft.com · Oct 11, 2025
  • Understanding Kubernetes Limits and Requests | Sysdigsysdig.com · Oct 01, 2025
  • Avoiding downtime in rolling deployments by blocking SIGTERMandrewlock.net · Sep 25, 2025
  • Security-Phoenix-demo/Shai-Hulud-Hulud-Shai-npm-tinycolour-compromise-verifier: Script to verify if tinycolour or the new crowdstrike NPM package alike are affecting your NPM Build - check https://phoenix.security/npm-tinycolor-compromise/github.com · Sep 19, 2025
  • One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokensdirkjanm.io · Sep 19, 2025
  • Active Directory & Azure AD/Entra ID Security – Active Directory & Azure AD/Entra ID: Enterprise Security, Methods to Secure Active Directory, Attack Methods & Effective Defenses, PowerShell, Tech Notes, & Geek Trivia…adsecurity.org · Sep 13, 2025
  • Chrome-Statschrome-stats.com · Sep 08, 2025
  • Phoenix Security - AI Threat Analysisai-threat.phoenix.security · Aug 01, 2025
  • 20-year-old Vulnerability in Radio Remote Linking Protocol Let Hackers Control Train Brakescybersecuritynews.com · Jul 18, 2025
  • Security Engineering - A Guide to Building Dependable Distributed Systemscl.cam.ac.uk · Jul 16, 2025
  • Being secure by design: Engineer-led security - LeadDevleaddev.com · Jul 14, 2025
  • Unsecuredapikeysunsecuredapikeys.com · Jul 11, 2025
  • Messy poutinegithub.com · Jul 10, 2025
  • OWASP Top 10 CI/CD Security Risks | OWASP Foundationowasp.org · Jul 10, 2025
  • projectdiscovery/httpx: httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.github.com · Jul 04, 2025
  • Enumerating Cognito Clients Exposed to the internetlabs.withsecure.com · Jul 04, 2025
  • Remote Prompt Injection in GitLab Duo Leads to Source Code Theftlegitsecurity.com · Jun 29, 2025
  • Cybersecurity Webinar Library - SASIG webinars on demandthesasig.com · Jun 28, 2025
  • CISSP Process Guide Notesstudynotesandtheory.com · Jun 28, 2025
  • MCP Security hubmcp.backslash.security · Jun 25, 2025
  • OWASP AI Testing Guideowasp.org · Jun 25, 2025
  • Passkeys for Normal Peopletroyhunt.com · Jun 23, 2025
  • It's 2025—Why Are Banks Still Getting Authentication So Wrong?jamal.haba.sh · Jun 23, 2025
  • High Leverage Security Decisions0xda.de · Jun 23, 2025
  • GitHub MCP Exploited: Accessing private repositories via MCPinvariantlabs.ai · Jun 23, 2025
  • Weaponizing Dependabot: Pwn Request at its finestboostsecurity.io · Jun 23, 2025
  • The Ultimate Guide to JWT Vulnerabilities and Attacks (with Exploitation Examples)pentesterlab.com · Jun 23, 2025
  • OWASP Top 10 for Business Logic Abuse | OWASP Foundationowasp.org · Jun 23, 2025
  • What Should I Work on Next? A Framework for High-Impact Security Workengseclabs.com · Jun 23, 2025
  • wiz-sec-public/secure-rules-files: Baseline rules files to improve the security of AI-generated code (Claude, Cursor, Copilot + more)github.com · Jun 16, 2025
  • SecLists/Passwords at master · danielmiessler/SecListsgithub.com · Jun 16, 2025
  • Email Spoof Testemailspooftest.com · Jun 04, 2025
  • Encrypt it or lose it: how encrypted SNI worksblog.cloudflare.com · Jun 02, 2025
  • EU Vulnerability Database (EUVD)euvd.enisa.europa.eu · Jun 02, 2025
  • Create a request - OAuth 2.0 Debuggeroauthdebugger.com · May 19, 2025
  • Scan Your Kubernetes Cluster with KubeBuddyluke.geek.nz · May 14, 2025
  • Zenaikido.dev · May 11, 2025
  • AikidoSec/intelgithub.com · May 11, 2025
  • Aikido Intel | Vulnerability Databaseintel.aikido.dev · May 11, 2025
  • Secure by Design Problem Bookgov.uk · May 11, 2025
  • Headlampheadlamp.dev · May 11, 2025
  • The Risk of Default Configuration: How Out-of-the-Box Helm Charts Can Breach Your Clustertechcommunity.microsoft.com · May 09, 2025
  • Understanding and mitigating security risks in MCP implementationstechcommunity.microsoft.com · May 08, 2025
  • Azure Container Registry Continuous Patching for Securityluke.geek.nz · May 08, 2025
  • New whitepaper outlines the taxonomy of failure modes in AI agentsmicrosoft.com · Apr 29, 2025
  • Understanding the threat landscape for Kubernetes and containerized assetsmicrosoft.com · Apr 29, 2025
  • What is HTTP request smuggling?portswigger.net · Apr 23, 2025
  • Google launches Sec-Gemini v1, a new experimental cybersecurity modelsecurity.googleblog.com · Apr 11, 2025
  • EFF Border Search Pocket Guideeff.org · Apr 05, 2025
  • CodeQLEAKED – Public Secrets Exposure Leads to Supply Chain Attack on GitHub CodeQLpraetorian.com · Apr 05, 2025
  • Introduction - SIG Multiclustermulticluster.sigs.k8s.io · Mar 30, 2025
  • GitHub - project-copacetic/copacetic: 🧵 CLI tool for directly patching container images!github.com · Mar 30, 2025
  • Securing the multicloud advantage: AWS to Azure security model comparisontechcommunity.microsoft.com · Mar 24, 2025
  • Under the Radar: How We Found 0-Days in the Build Pipeline o... François Proulx & Benoît Côte-Jodoinyoutube.com · Mar 19, 2025
  • Strengthening the Software Supply Chain and Open Source Projectsyoutube.com · Mar 19, 2025
  • HuntDB - Vulnerability Intelligence Platformhuntdb.com · Mar 15, 2025
  • Gandalf | Lakera – Test your prompting skills to make Gandalf reveal secret information.gandalf.lakera.ai · Mar 13, 2025
  • Why The Classic DMZ/Secure Zone Design Is Worthless in Azure | Aidan Finn, IT Proaidanfinn.com · Mar 10, 2025
  • Fetch the Flag CTF 2025 Community Writeups | Snyksnyk.io · Mar 07, 2025
  • What Is FraudGPT? | HackerNoonhackernoon.com · Mar 06, 2025
  • Homomorphic encryptionen.wikipedia.org · Mar 05, 2025
  • Customer Guest Blog – Driving down the Criticals – Clear Bank & Phoenix Security ASPMphoenix.security · Mar 05, 2025
  • Keeping .NET Base Docker Images Updated with Azure Container Registryblueboxes.co.uk · Mar 03, 2025
  • Application Gateway for Containers: a not-so-gentle introblog.cloudtrooper.net · Mar 03, 2025
  • From zero to hero with identity and access control in Azure Kubernetes Servicetechcommunity.microsoft.com · Mar 03, 2025
  • New Graph Permissions for User Account Managementoffice365itpros.com · Mar 02, 2025
  • Packaging Permissions in Stored Proceduressommarskog.se · Feb 28, 2025
  • Open Source Insightsdeps.dev · Feb 28, 2025
  • OWASP WrongSecrets | OWASP Foundationowasp.org · Feb 28, 2025
  • InfoSecMapinfosecmap.com · Feb 28, 2025
  • PCI Security Standards Council – Protect Payment Data with Industry-driven Security Standards, Training, and Programspcisecuritystandards.org · Feb 22, 2025
  • Discover CVE Statistics | OpenCVE Documentationblog.opencve.io · Feb 22, 2025
  • Pondering Portable Passwordless Passkeys in 2025 – Rew Islamscworld.com · Feb 22, 2025
  • Applying AI to the SDLC: New Ideas and Gotchas! - Leveraging AI to Improve Software Engineeringyoutube.com · Feb 13, 2025
  • ShredOSgithub.com · Feb 08, 2025
  • PayPal phish with Verification?reddit.com · Feb 06, 2025
  • Security BSides Londonyoutube.com · Feb 03, 2025
  • Introducing the AKS Security Dashboard: Now in Preview - Pixel Robots.pixelrobots.co.uk · Feb 03, 2025
  • SecretLess App Registrations in Entra IDtechcommunity.microsoft.com · Feb 03, 2025
  • Your Data, Your Rules: How GDPR Protects Your Privacyyoutube.com · Feb 01, 2025
  • Subnotosubnoto.com · Feb 01, 2025
  • S4S Club. Online registration by Cvents4sclub.co.uk · Jan 31, 2025
  • Understanding the EU’s Cyber Resilience Act (CRA) | Snyksnyk.io · Jan 25, 2025
  • Let’s talk about AI and end-to-end encryptionblog.cryptographyengineering.com · Jan 25, 2025
  • Passkeys: the promise of a simpler and safer alternative to passwordsncsc.gov.uk · Jan 25, 2025
  • Use Fluent Bit for Kubernetes events gathering on Azure Kubernetes Servicedanielstechblog.io · Jan 24, 2025
  • Understanding the 2024 CWE Top 25 Most Dangerous Software Weaknesses and application security and how ASPM can helpphoenix.security · Jan 24, 2025
  • Seven years of open source: A more secure and diverse ecosystemgithub.blog · Jan 24, 2025
  • Attacks on Maven proxy repositoriesgithub.blog · Jan 24, 2025
  • A 7-Zip bug allows to bypass the Mark of the Web (MotW) featuresecurityaffairs.com · Jan 24, 2025
  • Scaling Dynamic Application Security Testing (DAST) | MSRC Blog | Microsoft Security Response Centermsrc.microsoft.com · Jan 24, 2025
  • Bottleneck Dirty Websstaysaasy.com · Jan 14, 2025
  • semgrep/semgrep-rules: Semgrep rules registrygithub.com · Jan 13, 2025
  • GitOops... I Did It Again! Protecting Your GitOps System from Being Used for... O. Livni, E. Ptichayoutube.com · Jan 08, 2025
  • Let's Encrypt to end OCSP support in 2025scotthelme.co.uk · Jan 08, 2025
  • New "DoubleClickjacking" Exploit Bypasses Clickjacking Protections on Major Websitesthehackernews.com · Jan 08, 2025
  • Cyber security careers: a route map through the 15 cyber security specialismsukcybersecuritycouncil.org.uk · Jan 07, 2025
  • Cyber security skills in the UK labour market 2024: technical reportgov.uk · Jan 07, 2025
  • ParentShield Child-Safe Network SIM Only Dealsparentshield.co.uk · Dec 30, 2024
  • Aikido Intelaikido.dev · Dec 30, 2024
  • nccgroup/PS2github.com · Dec 20, 2024
  • Effortlessly access cloud resources across Azure tenants without using secrets | Microsoft Entra Identity Platformdevblogs.microsoft.com · Dec 20, 2024
  • Welcome to WithAName!witha.name · Dec 18, 2024
  • secureworks/pytunegithub.com · Dec 16, 2024
  • Hifo finds you the right company and product or service for your needs.hifo.co · Dec 15, 2024
  • The Next Step in GitGuardian’s NHI Security Approachblog.gitguardian.com · Dec 15, 2024
  • Gen AI for DevSecOps - Kindokindo.ai · Dec 14, 2024
  • bridgecrewio/checkov: Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.github.com · Dec 14, 2024
  • aquasecurity/cloudsploit: Cloud Security Posture Management (CSPM)github.com · Dec 14, 2024
  • projectdiscovery/subfindergithub.com · Dec 14, 2024
  • adeyosemanputra/pygoat: intentionally vuln web Application Security in djangogithub.com · Dec 14, 2024
  • GitHub Advisory Databasegithub.com · Dec 14, 2024
  • Spirion | Data Discovery & Privacy-Grade Solutionsspirion.com · Dec 13, 2024
  • Microsoft Security Compliance Toolkit Guidelearn.microsoft.com · Dec 13, 2024
  • When a Telescope Is a National-Security Risk - The Atlantictheatlantic.com · Dec 03, 2024
  • Terraform 1.10 improves handling secrets in state with ephemeral valueshashicorp.com · Nov 29, 2024
  • The Extent of Hardcoded Secrets: From Development to Productionblog.gitguardian.com · Nov 29, 2024
  • The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Accessvolexity.com · Nov 25, 2024
  • Auditing package dependencies for security vulnerabilitieslearn.microsoft.com · Nov 21, 2024
  • OWASP Cloud-Native Application Security Top 10 | OWASP Foundationowasp.org · Nov 20, 2024
  • SARIF Homesarifweb.azurewebsites.net · Nov 06, 2024
  • Croupier - the dealer for your Cybersecurity card gamescroupier.agilestationery.co.uk · Nov 05, 2024
  • Docker Zombie Layers: Why Deleted Layers Can Still Haunt Youblog.gitguardian.com · Nov 05, 2024
  • Be heard above the noise: How to better communicate security messages - SASIGthesasig.com · Nov 05, 2024
  • smicallef/spiderfoot: SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.github.com · Nov 05, 2024
  • Turning The Tables: Using Cyber Deception To Hunt Phishers At Scale - Ross Bevingtonyoutube.com · Nov 04, 2024
  • Black Hat Europe 2023 Keynote: My Lessons from the Uber Caseyoutube.com · Nov 01, 2024
  • Tutorial: Use dynamic configuration in Azure App Configuration Kubernetes Providerlearn.microsoft.com · Oct 31, 2024
  • The SSO Wall of Shamesso.tax · Oct 23, 2024
  • cisagov/ScubaGear: Automation to assess the state of your M365 tenant against CISA's baselinesgithub.com · Oct 16, 2024
  • Maester | Maestermaester.dev · Oct 16, 2024
  • upbound/provider-azuread@v1.5.0 | Upbound Marketplacemarketplace.upbound.io · Oct 03, 2024
  • Notion – The all-in-one workspace for your notes, tasks, wikis, and databases.hassanjanjua.notion.site · Oct 01, 2024
  • Threat Modeling Gameplay with EoP: A reference manual for spotting threats in software architectureyoutube.com · Sep 30, 2024
  • Reduce IAM Technical Debtgartner.com · Sep 30, 2024
  • How to build a successful threat modeling program: Episode 3 - Driving Adoptionyoutube.com · Sep 30, 2024
  • Microsoft's quantum-resistant cryptography is heretechcommunity.microsoft.com · Sep 30, 2024
  • Be Very Careful with Allow Rules in Azure WAF'ssamcogan.com · Sep 30, 2024
  • Understanding the KubeConfig File: Insights from Building KubeTidy - Pixel Robots.pixelrobots.co.uk · Sep 30, 2024
  • Secrets and Shadows: Leveraging Big Data for Vulnerability Discovery at Scalebilldemirkapi.me · Sep 27, 2024
  • NIST Scraps Passwords Complexity and Mandatory Changesinfosecurity-magazine.com · Sep 27, 2024
  • Top Five Security Tipsyoutube.com · Sep 13, 2024
  • How To Rotatehowtorotate.com · Sep 12, 2024
  • Orca Securityorca.security · Sep 09, 2024
  • Entra ID Open Source Intelligence toolaadinternals.com · Sep 06, 2024
  • Malware Museumarchive.org · Sep 06, 2024
  • Securing the Kubernetes Supply Chain: Software Factory Reference Architecturecontrol-plane.io · Sep 05, 2024
  • Uncover Security Coverage Gaps with AppRisk Essentials | August 28, 2024youtube.com · Sep 03, 2024
  • How to build a successful threat modeling program: Episode 2 - Building Foundationsyoutube.com · Sep 03, 2024
  • Demystifying GitHub Private Forks - The Hidden Danger of Cached Viewblog.gitguardian.com · Sep 02, 2024
  • The Secrets of the New York Times Source Code Breachblog.gitguardian.com · Sep 02, 2024
  • adamshostack/4QuestionFrame: Shostack's 4 Question Frame for Threat Modelinggithub.com · Aug 23, 2024
  • we got an ~RCE on M365 Copilot by sending an emailx.com · Aug 22, 2024
  • GitGuardian/sample_secretsgithub.com · Aug 22, 2024
  • terraform-linters/tflint: A Pluggable Terraform Lintergithub.com · Aug 22, 2024
  • Anyone can Access Deleted and Private Repository Data on GitHubtrufflesecurity.com · Jul 25, 2024
  • Reviewing role-based access control challenges and attack scenarios - SASIGthesasig.com · Jul 24, 2024
  • Security Chaos Engineering: Sustaining Resilience in Software and Systemssecuritychaoseng.com · Jul 22, 2024
  • How to build a successful threat modeling program: Episode 1 - Setting the sceneyoutube.com · Jul 22, 2024
  • Stu's OSINT & CTI Bookmarksstart.me · Jul 15, 2024
  • Notes/interview-study-notes-for-security-engineering.md at master · gracenolan/Notesgithub.com · Jul 14, 2024
  • Securing AI Apps on Azure: Using Keyless Auth with Azure AI Servicesspeakerdeck.com · Jul 14, 2024
  • B&B Shuffle by Richard Phung/P3hndrxplay.backdoorsandbreaches.com · Jul 14, 2024
  • Microsoft Copilot in Azure Series - Kubectlyoutube.com · Jul 14, 2024
  • WebGoat/WebGoat: WebGoat is a deliberately insecure applicationgithub.com · Jul 14, 2024
  • JFrog Event: Expert Insights on Secure Software Developmentwatch.jfrog.com · Jul 14, 2024
  • Phishing for Gold: Cyber Threats Facing the 2024 Paris Olympicsbrighttalk.com · Jul 14, 2024
  • dotJS 2024 - Maud Nalpas - Our future without passwordsyoutube.com · Jul 12, 2024
  • TryHackMe | Cyber Security Trainingtryhackme.com · Jul 08, 2024
  • Cybersecurity is full!cyberisfull.com · Jul 07, 2024
  • DNSDumpster.com - dns recon and research, find and lookup dns recordsdnsdumpster.com · Jul 04, 2024
  • Artifact policy checks - Azure Pipelineslearn.microsoft.com · Jul 03, 2024
  • appsecco/dvcsharp-api: Damn Vulnerable C# Application (API)github.com · Jul 02, 2024
  • Living off the land attacks: How best to protect your organisations’ assets - SASIGthesasig.com · Jul 02, 2024
  • Rags to Reqs: Making ASVS Accessible Through the Power of Graphs and Chatbotsneo4j.com · Jun 30, 2024
  • Require Strong Passwords | CISAcisa.gov · Jun 30, 2024
  • Roeland Delrue GitHubgithub.com · Jun 28, 2024
  • Hiding in the Clouds: Abusing Azure DevOps Services to Bypass Microsoft Sentinel Analytic Rulesyoutube.com · Jun 28, 2024
  • Mitigating Skeleton Key, a new type of generative AI jailbreak technique | Microsoft Security Blogmicrosoft.com · Jun 28, 2024
  • Toward greater transparency: Unveiling Cloud Service CVEs | MSRC Blog | Microsoft Security Response Centermsrc.microsoft.com · Jun 28, 2024
  • SAEPIO INFORMATION SECURITYsaepio.co.uk · Jun 19, 2024
  • Magic Quadrant for Application Security Testinggartner.com · Jun 18, 2024
  • Bringing DAST security to AI-generated codebrightsec.com · Jun 15, 2024
  • Elevation of Privilege Gameshostack.org · Jun 14, 2024
  • Why a local device PIN is better than a Master Password - Dashlanedashlane.com · Jun 14, 2024
  • GTP Client Webinar: Top Generative AI Adoption Security Risks and Mitigationsgartner.com · Jun 08, 2024
  • GitHub - Azure/PyRIT: The Python Risk Identification Tool for generative AI (PyRIT) is an open access automation framework to empower security professionals and machine learning engineers to proactively find risks in their generative AI systems.github.com · Jun 07, 2024
  • Understanding the new SaaS cyber kill chain - SASIGthesasig.com · Jun 07, 2024
  • Renovatedocs.renovatebot.com · Jun 06, 2024
  • Commits deleted from git history are still visible i...developercommunity.visualstudio.com · Jun 02, 2024
  • Hacksplaininghacksplaining.com · Jun 02, 2024
  • Common Vulnerability Scoring System Version 3.1 Calculatorfirst.org · Jun 02, 2024
  • Zscaler Cloud Security: My IP Addressip.zscaler.com · Jun 02, 2024
  • support install https proxy certificate · Issue #2826 · kubernetes-sigs/kindgithub.com · Jun 02, 2024
  • quarkslab/minik8s-ctf: A beginner-friendly CTF about Kubernetes security.github.com · Jun 02, 2024
  • Azure Firewall integration in Copilot for Security: protect networks at machine speed with Gen AItechcommunity.microsoft.com · Jun 02, 2024
  • Public preview azure web application firewall waf integration in microsoft copilot for securityazure.microsoft.com · Jun 02, 2024
  • arthaud/git-dumper: A tool to dump a git repository from a websitegithub.com · Jun 01, 2024
  • The Illustrated Children's Guide to Kubernetesyoutube.com · Jun 01, 2024
  • Inside AI Security with Mark Russinovichbuild.microsoft.com · Jun 01, 2024
  • rad-security/kbom: KBOM - Kubernetes Bill of Materialsgithub.com · Jun 01, 2024
  • Kubernetes Goatmadhuakula.com · May 31, 2024
  • Mozilla Observatoryobservatory.mozilla.org · May 29, 2024
  • K8s LAN Partyk8slanparty.com · May 27, 2024
  • Microsoft Security Development Lifecycle Practicesmicrosoft.com · May 27, 2024
  • ISC2 Skill-Buildersisc2.org · May 25, 2024
  • How to secure secrets in state with terraform | Azure Terraformer posted on the topic | LinkedInlinkedin.com · May 24, 2024
  • Ian R. on LinkedIn: #spdx #cyclonedx #sbom #security #csaf #vex | 10 commentslinkedin.com · May 21, 2024
  • Microsoft Fabric security fundamentals - Microsoft Fabriclearn.microsoft.com · May 16, 2024
  • Prevent SaaS Data Breaches with AppOmniappomni.com · May 15, 2024
  • GRC's | SQRL Secure Quick Reliable Logingrc.com · May 15, 2024
  • Art of hacking LLM appsinfosecwriteups.com · May 14, 2024
  • I Will IDOR Myself In - Vangelis Stykasyoutube.com · May 11, 2024
  • Application Security Testing Webinars | Synopsyssynopsys.com · May 11, 2024
  • What is Security Engineering? Part 2.newsletter.pragmaticengineer.com · May 11, 2024
  • What is Security Engineering? Part 1.newsletter.pragmaticengineer.com · May 11, 2024
  • INTRODUCING: Agentic Security - LLM Security Scanner! 🔍x.com · May 11, 2024
  • netfetch is a tool designed to scan Kubernetes namespaces for network policies and check whether a network policy targets your workloadsx.com · May 11, 2024
  • Sebastian Coles on LinkedIn: #ukcyberweek #imolinkedin.com · May 11, 2024
  • in-toto/attestation: in-toto Attestation Frameworkgithub.com · May 11, 2024
  • What Is a Cloud Access Security Broker (CASB)? | Microsoftmicrosoft.com · May 11, 2024
  • in-toto | A framework to secure the integrity of software supply chainsin-toto.io · May 11, 2024
  • Microsoft: Kubernetes clusters hacked in malware campaign via PostgreSQLbleepingcomputer.com · May 11, 2024
  • Hardenize: Comprehensive web site configuration testhardenize.com · May 11, 2024
  • What is Technology Risk?net.safe.security · May 11, 2024
  • K8S Threat Model | CloudSecDocscloudsecdocs.com · May 11, 2024
  • The immutable laws of securitylearn.microsoft.com · May 11, 2024
  • Now Scanninggithub.com · May 11, 2024
  • Open Source Licenses: Types and Comparison | Snyksnyk.io · May 11, 2024
  • Secure Coding Practices with Missions | Secure Coachlearn.securecodewarrior.com · May 11, 2024
  • azure.permissions.cloudazure.permissions.cloud · May 11, 2024
  • How to stay safe from repo-jackinggithub.blog · May 11, 2024
  • Sucuri Securitysitecheck.sucuri.net · May 11, 2024
  • HtmlSanitizergithub.com · May 11, 2024
  • Change management series: Across our whole organisation with ways of working - SASIGthesasig.com · May 11, 2024
  • Dependency-Track | Software Bill of Materials (SBOM) Analysisdependencytrack.org · May 11, 2024
  • OWASP Releases Security Checklist Generative AI Deploymentinfosecurity-magazine.com · May 11, 2024
  • Web LLM attacks | Web Security Academyportswigger.net · May 11, 2024
  • From Logs to Detection: Using Snowflake and Panther to Detect K8s Threatsmedium.com · May 11, 2024
  • What the NSA and CISA Left Out of Their Kubernetes Hardening Guidetremolosecurity.com · May 11, 2024
  • Role Based Access Control Good Practiceskubernetes.io · May 11, 2024
  • Kyvernokyverno.io · May 11, 2024
  • Open Policy Agentopenpolicyagent.org · May 11, 2024
  • GoogleContainerTools/distroless: Language focused docker images minus the operating system.github.com · May 11, 2024
  • Let's talk about anonymous access to Kubernetesraesene.github.io · May 11, 2024
  • NCSC's cyber security training for staff now availablencsc.gov.uk · May 11, 2024
  • CyberChef: Parse Google Authenticator QR Code (single export) using protobuf schema and extract TOTP secret as Base32gist.github.com · May 11, 2024
  • A Look at Software Composition Analysis Doyensec's Blogblog.doyensec.com · May 11, 2024
  • Caversham Cablescavershamcables.co.uk · May 11, 2024
  • WerWolv/ImHex: A Hex Editor for Reverse Engineers Programmers and people who value their retinas when working at 3 AM.github.com · May 11, 2024
  • Responding to a cyber incident a guide for CEOsncsc.gov.uk · May 11, 2024
  • Dashlane Now Has a Brand Indicator for Message Identification (BIMI)dashlane.com · May 11, 2024
  • Terraforming your way through Azure AD Entitlement Managementgoodworkaround.com · May 11, 2024
  • amass/doc/user_guide.md at master owasp-amass/amassgithub.com · May 11, 2024
  • aboul3la/Sublist3r: Fast subdomains enumeration tool for penetration testersgithub.com · May 11, 2024
  • Blog: Google's Threat model for Post-Quantum Cryptographybughunters.google.com · May 11, 2024
  • Sean Wrightblog.sean-wright.com · May 11, 2024
  • Microsoft Entra Verified ID | Microsoft Securitymicrosoft.com · May 11, 2024
  • Supply-chain Levels for Software Artifactsslsa.dev · May 11, 2024
  • British library cyber incident review 8 march 2024bl.uk · May 11, 2024
  • Devici | Smart Threat Modeling Tooldevici.com · May 11, 2024
  • GitHub - tldrsec/awesome-secure-defaults: Awesome secure by default libraries to help you eliminate bug classes!github.com · May 11, 2024
  • How Microsoft discovers and mitigates evolving attacks against AI guardrails | Microsoft Security Blogmicrosoft.com · May 11, 2024
  • gofrontier-com/sheriff-plan-actiongithub.com · May 11, 2024
  • Threats: What Every Engineer Should Learn From Star Wars: Shostack Adam: 9781119895169: Amazon.com: Booksamazon.com · May 11, 2024
  • gsoft-inc/azure-cli-credentials-proxy: Azure CLI developer credential proxy for Docker designed for use in local development environments.github.com · May 11, 2024
  • KQL-threat-hunting-queries/01.ThreatHunting/CVE-2024-3094-internet-facing-devices.md at main cyb3rmik3/KQL-threat-hunting-queriesgithub.com · May 11, 2024
  • DefectDojo | CI/CD and DevSecOps Automationdefectdojo.org · May 11, 2024
  • Cybersecurity for the Space Domain | NCCoEnccoe.nist.gov · May 11, 2024
  • Friction between DevOps and Security - Heres Why it Cant be Ignoredblog.sean-wright.com · May 11, 2024
  • madhuakula/kubernetes-goat: Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playgroundgithub.com · May 11, 2024
  • Aikidoaikido.dev · May 11, 2024
  • Security for Citizen Developers: Low-Code/No-Code Cybersecurity Threatsdev.to · May 11, 2024
  • riskydissonance/SharpCookieMonster: Extracts cookies from Chrome.github.com · May 11, 2024
  • Memory Forensics analysis of container checkpoints with checkpointctlbehouba.hashnode.dev · May 11, 2024
  • GhostPack/Seatbelt: Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.github.com · May 11, 2024
  • Abusing a Distroless Containermedium.com · May 11, 2024
  • sebastiean/volt: An open source Azure Key Vault API compatible server (emulator).github.com · May 11, 2024
  • Security Code Challenge - Damn Vulnerable RESTaurant | DevSec Blogdevsec-blog.com · May 11, 2024
  • How Do You Secure Hype: Baselining Your Orgs Generative AI Securitybrighttalk.com · May 11, 2024
  • Quantum-Proofing Your Data: Are You Ready for the Future of Cryptography? (e)brighttalk.com · May 11, 2024
  • Smart devices: new law helps citizens to choose secure productsncsc.gov.uk · May 11, 2024
  • GitHub - OpenCTI-Platform/opencti: Open Cyber Threat Intelligence Platformgithub.com · May 11, 2024
  • eBPF-Powered Threat Protection using Inspektor Gadgettechcommunity.microsoft.com · May 11, 2024
  • How to Address API Security in 2023?brighttalk.com · May 11, 2024
  • Converged Identity and Access Management A Zero Trust Journeybrighttalk.com · May 11, 2024
  • Risks of Microsoft Teams and Microsoft 365 Groups | Clément Notin | Blogclement.notin.org · May 11, 2024
  • Access Packages with multi-stage approvals - can you prevent the same person approving all stages?techcommunity.microsoft.com · May 11, 2024
  • OWASP Docker Top 10 | OWASP Foundationowasp.org · May 11, 2024
  • CIS Docker Benchmarkscisecurity.org · May 11, 2024
  • What are custom security attributes in Microsoft Entra ID? - Microsoft Entralearn.microsoft.com · May 11, 2024
  • Identifying Public vs. Private Microsoft 365 Groupsthatlazyadmin.com · May 11, 2024
  • Post-exploiting a compromised etcd Full control over the cluster and its nodesresearch.nccgroup.com · May 11, 2024
  • Supply Chain Attack as Codesprocketfox.io · May 11, 2024
  • Secrets should not be exfiltrated using Terraform HTTP data blocks - tfsecaquasecurity.github.io · May 11, 2024
  • Terraform Security - HackTricks Cloudcloud.hacktricks.xyz · May 11, 2024
  • 4 supply chain risks in Terraform and how to prevent them with Checkov - Bridgecrew Blogbridgecrew.io · May 11, 2024
  • projectdiscovery/nuclei: Fast and customizable vulnerability scanner based on simple YAML based DSL.github.com · May 11, 2024
  • How Kusto graph semantics can help solve a classic graph problem: the Seven Bridges of Königsbergtechcommunity.microsoft.com · May 11, 2024
  • Using Azure CLI Authentication within Local Containersendjin.com · May 11, 2024

Graph View

Backlinks

  • Kubernetes
  • Security Training & Certification
  • Security