📚 tl;dr sec 223 AI Auto-fixes, Mapping CloudTrail to Incidents, VS Code Extensions for Security Psst: I'm also collecting feedback on what AI + cybersecurity content you're interested in. If you have 3 min, I'd immensely appreciate your input: 👉 https://lnkd.in/gUJxgkEm ✨ Highlights 👨💻 AppSec 👨💻 - Vulnerability Reward Program: 2023 Year in Review - Google - The Family of Safe Golang Libraries is Growing! - Imre Rad - Read code like a pro with our weAudit VSCode extension - Filipe Casal - Introducing PoIEx - Points Of Intersection Explorer - Francesco Lacerenza, Michele Lizzit ☁ Cloud Security ☁ - TrailDiscover: Map CloudTrail to Incidents and MITRE ATT&CK - Adan Álvarez Vilchez - Tales from the cloud trenches: Using malicious AWS activity to spot phishing campaigns - Martin Mc Closkey 📦 Container Security 📦 - Open-source, client-only and unopinionated Codespaces - Loft Labs - NamespaceHound: protecting multi-tenant K8s clusters - Shay Berkovich ⛓ Supply Chain ⛓ - Bincapz: Diff the capabilities of binaries - thomas S. - How to stay safe from repo-jacking - Kevin Backhouse - Supply Chain Insider Threats in Open Source projects - boostsecurity.io 🛡 Blue Team 🛡 - Products on your perimeter considered harmful (until proven otherwise) - SVG Files Abused in Emerging Campaigns - Max Gannon - Trust but test: Vendor security testing at Canva - Kane N., CJ Fairhead 😈 Red Team 😈 - AutoSmuggle: Smuggle malicious files via SVGs - Suraj Khetani - Indicator of Canary: identify canaries in various file formats - Justin Elze - Misconfiguration Manager: Overlooked and Overprivileged - Duane Michael, Garrett F., Chris Thompson 🤖 AI + Security 🤖 - A Binary Ninja plugin to reverse engineer function names - Tim Blazytko - Decompiling Binary Code with Large Language Models - 10x your AppSec program with Semgrep Assistant - Fixing security vulnerabilities with AI - Tiferet Gazit https://lnkd.in/gw_XFTF3 #cybersecurity #infosec #security #ciso #ai
Thank you for including TrailDiscover!
Nice. Congrats to the team on the Semgrep Assistant launch 👌
Thanks for the feature!
Sharing the latest cybersecurity research at tldrsec.com | Head of Security Research at Semgrep
7mo📢 Sponsor: Hyperproof: Join our experts Cheri Hotman-CPA, MBA, CISSP, Partner, vCISO and Kayne McGladrey, Field CISO on Wednesday, April 3rd at 1 PM ET in our GRC Webinar: https://www.brighttalk.com/webcast/18576/606204?utm_source=tldrsecmar2024-sharing&utm_medium=web&utm_campaign=linkshare