CTFs, Bug Bounties, and Accidental Vulnerability Discovery

A Vignette on the Importance of Offensive Cybersecurity Training, and Why Bug Bounty Programs Are So Valuable

Teaching offensive cybersecurity techniques builds better defenders. While I’ve discussed this before (like in this post), this vulnerability disclosure is a great vignette for highlighting why teaching offensive cybersecurity techniques are so important for building defensive cybersecurity professionals as well as why bug bounty programs are so critical for improving the defensive posture of your systems.

[Read More]

CTFs, Bug Bounties, and Accidental Vulnerability Discovery

A Vignette on the Importance of Offensive Cybersecurity Training, and Why Bug Bounty Programs Are So Valuable

Teaching offensive cybersecurity techniques builds better defenders. While I’ve discussed this before (like in this post), this vulnerability disclosure is a great vignette for highlighting why teaching offensive cybersecurity techniques are so important for building defensive cybersecurity professionals as well as why bug bounty programs are so critical for improving the defensive posture of your systems.

[Read More]

CISSE 2019 Resources

Welcome CISSE 2019. In this post, you can find my slides as well as a draft copy of the CISSE19 paper.

[Read More]

BSides KC

Apr 26-27

Welcome BSidesKC. I attended and spoke this year at BSidesKC. This post discusses the [awesome] conference and provides the materials, including a video, of my talk.

[Read More]

BSides KC

Apr 26-27

Welcome BSidesKC. I attended and spoke this year at BSidesKC. This post discusses the [awesome] conference and provides the materials, including a video, of my talk.

[Read More]

Why we should teach Offensive Cybersecurity (Hacking), First

Even when the purpose of the training is to build defensive cybersecurity professionals

This post presents an argument for starting any cybersecurity education program with the offensive techniques, even when the purpose of the training is to build defensive cybersecurity professionals.

[Read More]