Recent Posts

Building up a SOC - the candidate challenge

Building up a SOC - the candidate challenge

Building a Security Operations Center from scratch is not an easy thing. But since it's not the first time I'm doing it, I am familiar with the challenges. These challenges include the building of the processes in a company-adjusted manner, the selection of the toolset and integrations to match the company's enterprise architecture, network architecture and of course my own security architecture, but nowadays, and due to the significant skill shortage in cybersecurity the major challenge is finding the right people.

The problem with compromised software

The problem with compromised software

As everybody probably knows by now, CCleaner was compromised and malicious individuals added multi-stage malware payload on it. A typical case of compromised software if you ask me, pretty much like the one with the Ukrainian tax software that spread Not-Petya. But there is a different aspect to why compromised software is very dangerous, and it actually uses (believe it or not) social engineering in a more advanced way.

Don't you want my money?

Don't you want my money?

I remember reading that Game of Thrones was the most downloaded series in 2016. It's a pity; I'm sure that everybody needs and wants and deserves to get paid if they're doing a good job. I won't pretend to be a saint, but let's just say that if a series is available in the country where I live, in English, with English subtitles, I am more than happy to pay to watch it.

Biometrics vs Passwords

Biometrics vs Passwords

Biometrics is supposed to be the ultimate solution for access control. It is also supposed to be the best replacement for passwords, not only from the security perspective, but also from the user-friendliness perspective. People don't have to cope with the strange (and inefficient) password rules that security used to push down their throats. So all is wonderful, and we should all be using biometrics now, right?