Profile avatar
mdwayne-real.bsky.social
I help people figure stuff out. I work at gitguardian.com Also, I am at https://www.linkedin.com/in/dwaynemcdaniel/
65 posts 103 followers 237 following
Prolific Poster

February 23rd, 2025, an unknown Threat Actor(s) compromised a North Korean ... whois record (maybe?), not entirely sure what we're looking at.

Tiny baby koala 📹 Symbio Wildlife Park

John Poulin joins the Security Repo Podcast to break down #DefenseInDepth, audit logs, and why security headers are the new "bank-grade encryption." 🔐 🎧 Listen now: https://buff.ly/3D0Le8C

What is the "best" security advice? I asked the guests of the Security Repo Podcast and am making shorts from them First up: Dustin Lehr

Always proud to be published in DZone!

I went to #IntelliC0N 2025 last week, and it was so insightful! Here is my recap:

I heard something surprising during training on how to recruit more diverse voices to our local political org: Some who are anti “DEI” often don’t know what the acronym stands for, so we should use the words themselves: Diversity Equity Inclusion It’s harder to admit they are against those things.

Surely this new video won't make me seem like a crank. www.youtube.com/watch?v=QEJp...

#IntelliC0N 2025 Featuring @reannaschultz.bsky.social Becoming a Professional AI Detection Engineer

A timeline cleanse ☺️

A lot of automated systems will block you committing passwords in your code, so you’re gonna want to base64 encode them to get around that. You’re a developer; you’ve got to move quickly. We don’t call it a sprint so you can sit around waiting for approvals.

Crypted Hearts: Exposing the HeartCrypt Operation Jerome Tujague at #IntelliC0N

How to quantify cyber risk without a PhD. Andrew Barnett At #IntelliC0N 2025

Moving Up and Out - When and Why to Move Cybersecurity out of IT Joshua Kuntz At #IntelliC0N 2025

In an introspective episode of the Security Repo Podcast, we interview our co-host and GitGuardian Security Lead, Kayssar Daher Learn more about his journey and how to improve yours! https://buff.ly/4jAOQii

Very inspired by this talk at #IntelliC0N about using AI for enhancing security awareness training...fun stuff!

Using AI for Positive Security Outcomes By Lee Martin At #IntelliC0N 2025

From Chaos to Control: Intelligence Led Defense Lance Taylor & Adelyn Fears at #IntelliC0N 2025

"Navigating the Shadows: The Crucial Intersection of KYC, AML, and Cyber Threat" by Jonathan Gonzalez at #IntelliC0N 2025 Financial crimes folks are learning cybersecurity, but are we in security learning enough about fincrime?

#IntelliC0N Keynote "A whole new world" From the fantastic Kyla Guru

Excited for the start of #IntelliC0N 2025

The Lion King in real life?! I would cryyy🥹🥹

I actually appreciate this. All public repos here btw.

The final session at #ChiBrrCon is the legendary annual CISO Panel This year featuring: - Mahmood Khan - Arlan McMillan - Darin Hurd - Walter Lefmann - Todd Fitzgerald - Neil Witek - Tina Hauri - Kevin Novak - Ricardo LaFosse

#ChiBrrCon Hacking other teams, using social skills, to strengthen your IAM Program Sean Juroviesky

Awesome to see Aria Langer at #ChiBrrCon giving her talk "Like a Hurricane: The Life and Times of Privileged Access Management (THE MOVIE)" Check out her episode of the Security Repo Podcast https://buff.ly/48pDKaR

"Revolutionizing Threat Modeling: The Power of AI Acceleration" from the always amazing Audrey Long #ChiBrrCon

NEW § LLMs struggle with large amounts of context. Bharani Subramaniam and I explain how to mitigate this common RAG problem with a Reranker which takes the document fragments from the retriever, and ranks them according to their usefulness. martinfowler.com/articles/gen...

#ChiBrrCon "Zero Trust for All Ages: An Architect’s Guide to Business-centric Zero Trust Implementation" by Pranshu Bajpai "Keeping the bad guys 'out' has not been working."

#ChiBrrCon IAM anti-patterns: hard lessons from real-world implementations Guillermo Roman "The '?' beside Non-Human Identities is there because there is no clear leader or tools to do this right now" I think this is the thing that is changing the fastest... CC: @gitguardian.com

#ChiBrrCon "IAM anti-patterns: hard lessons from real-world implementations" Guillermo Roman "IAM is evolving, and we must keep up"

I am VERY happy to have the chance to be an attendee at #ChiBrrCon this year. "Missed the keynote, so my first talk of the day is Build Your Cybersecurity Program One Step at a Time" from Nicolas Leroy (This is a very bright room)

I love Security Champions programs and publicly speak about the power of such programs. I was very fortunate to get Dustin Lehr as a guest on this episode of the Security Repo Podcast to talk about his influential work in this field https://buff.ly/3CxOyrN

AI tools: “Here’s your code!” Me: “Cool, but why’d you delete my working auth middleware?” AI tools: “🤷 The rest of your code here…” Me: 🫠

"Unlike humans, machines can't use multifactor authentication or passkeys, and developers can generate hundreds of these credentials through their work deploying applications." https://buff.ly/4hUJxss

A thread of curious animals interrupting wildlife photographers 😍 1.Thread 🧵

OWASP is doing the good work of helping us all be aware of the most common security issues, no matter what you are building. Here is my take on what they recently did for Mobile security awareness. https://buff.ly/4192fa8

I have been thinking about the role of IAM and the CISO's evolving role, so I wrote this.

security folks just so you know the upcoming digital tv standard provides for a custom web UI to be delivered over the broadcast and displayed automatically oh and there's a special websocket interface to localhost that lets the app query and set all sorts of TV behaviors it's fine

I knew there was a reason I always loved Calvin and Hobbes!

Did you miss the first week of my "Groaner Dad" dad joke project? Not to worry. Visit the joke archive! zurl.co/lcBIu

Courtship dance of the peacock spider 📹 Michael Lun / wa_peacock_jumping_spiders