<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[in one of @adamshostack&#x27;s (excellent) books i highlighted a lot but recent threads here about this topic and saw it scroll by:]]></title><description><![CDATA[<p>in one of <span><a href="/user/adamshostack%40infosec.exchange">@<span>adamshostack</span></a></span>'s (excellent) books i highlighted a lot but recent threads here about this topic and saw it scroll by:</p><p>&gt; First, turn on automatic update on everything, most especially devices, operating systems, and web browsers. The updates that engineers ship often address security problems that can be exploited automatically. If your vendor mixes functionality changes with security fixes, complain loudly.</p><p><a href="https://soc.kvet.ch/tags/cybersecurity" rel="tag">#<span>cybersecurity</span></a> <a href="https://soc.kvet.ch/tags/hygiene" rel="tag">#<span>hygiene</span></a> <a href="https://soc.kvet.ch/tags/infosec" rel="tag">#<span>infosec</span></a> <a href="https://soc.kvet.ch/tags/autoupdate" rel="tag">#<span>autoupdate</span></a> <a href="https://soc.kvet.ch/tags/bestPractices" rel="tag">#<span>bestPractices</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/d24dff93-b27f-4e81-92b0-264bf15cf5c8/in-one-of-@adamshostack-s-excellent-books-i-highlighted-a-lot-but-recent-threads-here-about-this-topic-and-saw-it-scroll-by</link><generator>RSS for Node</generator><lastBuildDate>Mon, 25 May 2026 14:49:41 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/d24dff93-b27f-4e81-92b0-264bf15cf5c8.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 16 May 2026 16:50:29 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to in one of @adamshostack&#x27;s (excellent) books i highlighted a lot but recent threads here about this topic and saw it scroll by: on Sat, 16 May 2026 17:09:07 GMT]]></title><description><![CDATA[<p>the latest update may just as likely be a malicious payload. so how are we supposed to stay current and safe? scheduled patch cycles? sandboxes? these all require automation and the fastest paths would use inference, which is another path for malicious software to get involved.</p>]]></description><link>https://board.circlewithadot.net/post/https://soc.kvet.ch/users/emory/statuses/116585355490965938</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://soc.kvet.ch/users/emory/statuses/116585355490965938</guid><dc:creator><![CDATA[emory@soc.kvet.ch]]></dc:creator><pubDate>Sat, 16 May 2026 17:09:07 GMT</pubDate></item><item><title><![CDATA[Reply to in one of @adamshostack&#x27;s (excellent) books i highlighted a lot but recent threads here about this topic and saw it scroll by: on Sat, 16 May 2026 17:07:32 GMT]]></title><description><![CDATA[<p>now i would argue the opposite position.</p>]]></description><link>https://board.circlewithadot.net/post/https://soc.kvet.ch/users/emory/statuses/116585349263343712</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://soc.kvet.ch/users/emory/statuses/116585349263343712</guid><dc:creator><![CDATA[emory@soc.kvet.ch]]></dc:creator><pubDate>Sat, 16 May 2026 17:07:32 GMT</pubDate></item></channel></rss>