security
7 TopicsThis Month In Security: Ep. 16 - Nov. - Identity Threat Report, AI Security & Governance Checklist
This Month In Security, Aubrey King and the crew try out a new show format. Aubrey catches up with Sandy Dunn, CISO, about her work on the AI Security And Governance Checklist. In addition, Sander_Vinberg talks to the roundtable about his latest contribution to Labs, The 2023 Identity Threat Report. warburtr0n is back, as well, and sits in with AaronJB and Malcolm Heath for the monthly roundtable. Strap On Those Earbuds! Links: https://movember.com https://c2pa.org https://www.first.org/cvss/v4-0/ https://www.f5.com/labs/articles/threat-intelligence/2023-identity-threat-report-the-unpatchables https://llmtop10.com https://openssf.org/community/openssf-working-groups/564Views2likes0CommentsThis Month In Security: Ep. 15 - October - Elder Care Security / Release Lead / Lorrie MacVittie
This Month In Security, Aubrey King catches up with Ads on his involvement as a release lead for the OWASP Top Ten For Large Language Model Applications. Also, we hear from a fellow speaker at B-Sides Ottawa, Tashaffi Samin Yeassar, regarding her talk on Elder Care Security and how to pick a topic for your talk. Plus, Lorrie MacVittie joins the roundtable we Aubrey and Malcolm Heath.370Views1like0CommentsThis Month In Security: Episode 14 - September - ML Top 10 & Vuln4Cast
This Month In Security, Aubrey King welcomes OWASP Top 10 for ML Applications Leads, Shain Singh and Sagar Bhure to find out more about the project. Sander Vinberg also shares his takeaways from the Vuln4Cast Colloquium and we welcome in Malcolm Heath for a roundtable.739Views0likes0CommentsThis Month In Security Episode 12: July, 2023 - CyberSecurity Apprenticeships, Large Language Models
If you're hitting up BlackHat 2023, you're going to hear a LOT about Large Language Model security, which dominated the news this month in security. Also, Aubrey King talks with Jason Ross, from Rochester Institute of Technology and Jenn Carlson, from Apprenti, about cybersecurity apprenticeship options.848Views3likes0CommentsF5 Distributed Cloud(XC) Site Edge/Customer Sites without Regional Edge capabilities question.
Hello, I decided to finally read about the the F5 Distributed Cloud and I had some questions about using only Site Edge Nodes (Customer Sites) without Regional Edge Nodes. Is layer 7 DOS/DDOS protection still an option without Regional Edge ? For me this should work as only for Layer 3/4 DOS/DDOS the Regional Edge is needed as a scrubbing center. Also is it possible to make ipsec/ssl tunnels between Site Edge Nodes full mesh? From I read in https://docs.cloud.f5.com/docs/about-f5-distributed-cloud/mesh this should be correct if I am reading it right "Using an industry-proven network stack with most advanced BGP implementation, we are able to provide full-mesh or hub-and-spoke connectivity across cloud or edge sites. The nodes automatically create secure IPSec/SSL tunnels with each other if they have direct IP reachability or securely connect to multiple nearest global PoPs. Using application or policy-based routing, traffic can be load balanced for optimal performance across this network. In addition, you can enable a network firewall and forward proxy capabilities to control and filter traffic to and from the applications."Solved3.1KViews0likes3CommentsF5 Quarterly Security Notifications - August 2022
Beginning November 3, 2021, F5 began disclosing security vulnerabilities and security exposures for F5 products in a Quarterly Security Notification (QSN). On August 3, at 8:00 AM Pacific, DevCentral’s AubreyKingF5 and PSilva with the help of Brian A. McHenry and AaronJB review the August 2022 QSN and what you need to know about it. For more information, refer to K12201527: Overview of Quarterly Security Notifications https://support.f5.com/csp/article/K12201527175Views0likes0CommentsDC Connects August 2, 2022: SSL Orchestrator Troubleshooting
Join DevCentral's Aubrey King and Peter Silva August 2 8:30AM PT as they welcome Lucas Thompson to talk about the new F5 BIG-IP SSL Orchestrator Troubleshooting Guide to show you a bit about how attention to document flow formatting can simplify your life as a DevSecOps Engineer! And, we share 'This Month in Security' with F5 SIRT's Aaron Brailsford. Links: F5 BIG-IP SSL Orchestrator Troubleshooting Guide: https://clouddocs.f5.com/sslo-troubleshooting-guide/main/ SE for Service Provider: https://f5.recsolu.com/jobs/ZGZyyISYqjXyW4tov7rm7A?job_board_id=USARc2y-c5XCyiKQlSxsbQ SA for Fraud Solutions: https://f5.recsolu.com/jobs/7Frc2e-xFZIAFWb_praF3g?job_board_id=USARc2y-c5XCyiKQlSxsbQ243Views0likes1Comment