I'm quoted in the following article with best practices for developers to lock down their build systems: Anthropic employee error exposes Claude Code source
https://twp.ai/E6HVDn
shehackspurple@infosec.exchange
Posts
-
I'm quoted in the following article with best practices for developers to lock down their build systems: Anthropic employee error exposes Claude Code sourcehttps://twp.ai/E6HVDn -
I’m thrilled to share that I’ll be teaching at Black Hat USA this August!I’m thrilled to share that I’ll be teaching at Black Hat USA this August!
My training is Secure Coding for Embedded Systems in C and C++.
If you write firmware or low-level code, we’ll dig into the security pitfalls that show up again and again in C and C++ and practice fixing them together.
Lots of vulnerable code. Lots of practical fixes. Lots of ways to build safer software.
Watch the short video below
Save your seat: https://twp.ai/E6HLrA -
It’s #CyberMentoringMonday!!!!It’s #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to ‘give back’? Use this thread and hashtag to connect
-
Not bad.Not bad. I only made 4, just to test. Have you checked out my new podcast yet?
https://twp.ai/9PcBI4 -
On April 10th, I’m kicking off something new… and I would LOVE for you to join me 💜On April 10th, I’m kicking off something new… and I would LOVE for you to join me

I’ll be diving into Chapter 1 of Alice & Bob Learn Secure Coding live, and I’m bringing an awesome guest with me: Dr. Gerald Auger (Simply Cyber)!
For 2 hours, we’re going to chat through the foundations of application security, things like:
The CIA Triad
Zero trust & defense in depth
Supply chain security
Threat modelingThis is NOT a lecture. It’s a conversation.
-
I'm quoted in the following article with best practices for developers to lock down their build systems: Anthropic employee error exposes Claude Code sourcehttps://twp.ai/E6HJiGI'm quoted in the following article with best practices for developers to lock down their build systems: Anthropic employee error exposes Claude Code source
https://twp.ai/E6HJiG -
Important question for software developers: what do you wish you knew more about in regard to creating more secure software?Important question for software developers: what do you wish you knew more about in regard to creating more secure software? If you could suddenly know something, like Neo in the matrix, what would it be?
I will see if I can help.
-
It’s #CyberMentoringMonday!!!!It’s #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to ‘give back’? Use this thread and hashtag to connect
-
Story challenge: What’s your funniest or most relatable security moment?Story challenge: What’s your funniest or most relatable security moment? Without breaking NDA, of course!
-
My plans for tonight got cancelled, #RSAC, what should I do?@Sikorsky78 sounds cool
-
My plans for tonight got cancelled, #RSAC, what should I do?My plans for tonight got cancelled, #RSAC, what should I do? What's up?

-
On April 10th, I’m kicking off something new… and I would LOVE for you to join me 💜On April 10th, I’m kicking off something new… and I would LOVE for you to join me

I’ll be diving into Chapter 1 of Alice & Bob Learn Secure Coding live, and I’m bringing an awesome guest with me: Dr. Gerald Auger (Simply Cyber)!
For 2 hours, we’re going to chat through the foundations of application security, things like:
The CIA Triad
Zero trust & defense in depth
Supply chain security
Threat modelingThis is NOT a lecture. It’s a conversation.
-
Hi!Hi! If you are Canadian, I NEED YOUR HELP. Please call your member of parliament and ask them to vote YES on petition e-7115. Watch the video to learn more!
Petition: https://twp.ai/Imwy1J
-
Where computers a mistake? -
If you were to automate one part of your AppSec pipeline today, what would it be and why? -
Where computers a mistake?Where computers a mistake?
-
If you were to automate one part of your AppSec pipeline today, what would it be and why?If you were to automate one part of your AppSec pipeline today, what would it be and why? And if it’s not currently automated, why not?
-
Would you like to hire me for in-person, secure coding training?Would you like to hire me for in-person, secure coding training? Here's my upcoming travel schedule for adding training dates:
April: Denver, CO
May: Toronto
June: Vienna (can add anywhere in EU)
August: Anywhere in EU
Sept: Denver, COtanya AT shehackspurple DOT ca
Isn't the AI image creepy?
-
It’s #CyberMentoringMonday!!!!It’s #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to ‘give back’? Use this thread and hashtag to connect
-
The Psychology of Bad Code: When Vibe Coding Turns Into a Security Risk.https://twp.ai/E6G049The Psychology of Bad Code: When Vibe Coding Turns Into a Security Risk.
https://twp.ai/E6G049The biggest danger with AI-generated code is not that it looks broken. It’s that it looks believable. It looks good.
1/3
