@wkandek Profile picture

Wolfgang Kandek

@wkandek

SRE @ wikimedia foundation

Similar User
Dave Aitel photo

@daveaitel

Ivan Ristic photo

@ivanristic

adam shostack photo

@adamshostack

Rob Lemos (@roblemos just about everywhere) photo

@roblemos

Marisa Fagan photo

@dewzi

Christophe Veltsos photo

@DrInfoSec

Andrew Hay photo

@andrewsmhay

alan shimel photo

@ashimmy

Bert Knabe photo

@bknabe

Peter Hesse @pmhesse@infosec.exchange photo

@pmhesse

Stacy Thayer photo

@DrStacyThayer

Dan Kennedy 🚫 photo

@danielkennedy74

Ward photo

@wardspan

Rafał Łoś 🇵🇱 🇺🇦 photo

@Wh1t3Rabbit

Biggles McSwole The Zionist Dolphin photo

@DaveMarcus

Wolfgang Kandek Reposted

Our friend @pancak3lullz has created a Twitter bot which monitors the SEC's RSS feed for 8-K and 6-K filings with cybersecurity incident materials (item 1.05). tl;dr reported breaches It's really cool. Follow it here: @SECurityTr8Ker


Very cool project. All tech accessible and well documented. techblog.wikimedia.org/2022/07/15/bui…


Thanks for the walk through. Super interesting.

In the spirit of distracting myself from Doom Scrolling, let's talk about a feature that is super useful that many folks don't really know a lot about: Remote Credential Guard.



Wolfgang Kandek Reposted

Dan Kaminsky @Dakami has been inducted into the Internet Hall of Fame for his 2008 discovery and repair of a critical flaw in DNS, now known as the Kaminsky Bug. #IHOF2021 #InternetHistory #InternetSecurity #cybersecurity internethalloffame.org/inductees/dan-…


Wolfgang Kandek Reposted

What surprises me most about this is the versions of RunC and Kubernetes (4-5 years out of date). Container breakouts should be assumed in any threat model, but at least keep the underlying environments a bit more recent. #azure #cloud #security unit42.paloaltonetworks.com/azure-containe…


Wolfgang Kandek Reposted

My mom & her husband have COVID. He’s been in the hospital for days struggling to breathe. They both could’ve been vaccinated months ago but chose not to cuz my mom believes a variety of conspiracy theories. It’s a bit late to realize COVID isn’t a hoax after all. 😐


Wolfgang Kandek Reposted

It's been two week since I left Google and I keep getting asked “why did I leave now”? I think the better question is “why did I stay for so long”? When Waze was acquired by Google, most of the people who know me did not believe I would las... 280/16,532 paygo.media/p/25171


Wolfgang Kandek Reposted

OpenSSL Cookbook 3rd Edition now available! (And still free!) The third edition of OpenSSL Cookbook, our free book that covers command-line usage of OpenSSL, is now available for your pleasure. Now fully up to date with TLS 1.3. Enjoy! feistyduck.com/books/openssl-…

Tweet Image 1

Wolfgang Kandek Reposted

The Qualys Research Team has discovered a critical vulnerability in #Sudo, which allows an unprivileged user to gain root privileges in its default configuration. #linux #unix #vulnerability blog.qualys.com/vulnerabilitie…


Wolfgang Kandek Reposted

So, there was a major attack recently. Apropos of that, I wanted to re-up how we (Microsoft) recommend folks lay out their environments for security-mindedness. In short we call it Privileged Administration. It's the foundation of our (ugh) zero trust model.


Listen? What do you mean? Wikipedia edits can be listened to as music and during the switchover we went read-only (no edits possible) for almost 2 minutes, so just silence in the stream...

Listen to our datacenter switchover...



Listen to our datacenter switchover...

Did you know that you can listen to @Wikipedia? Did you know that you can listen to Wikipedia go into stealth mode as our awesome SRE team performs our annual data center switchover? Watch for 3:50 when we come back online... (courtesy of @cdanis) youtube.com/watch?v=ZVw6cc…



Wolfgang Kandek Reposted

The American people will choose the next president who in turn will nominate the next Supreme Court justice. #LetThePeopleDecide


Wolfgang Kandek Reposted

Finally get to tell this story! In the midst of @Cloudflare's IPO Road Show I got word that Wikipedia was under a massive DDoS attack. Between investor meetings, I watched incredibly proudly as our team deployed Magic Transit to get them back online. cloudflare.com/case-studies/w…


Wolfgang Kandek Reposted

Japan is scanning its entire IPv4 address space to find insecure home routers, web cameras and sensors. The results are encouraging, and the country's program could serve as a model for other nations aiming to avoid large-scale #IoT security problems. databreachtoday.com/japans-iot-sca…


I just donated to the Internet Archive, the world's largest digital library and home of the Wayback Machine. Join me and chip in what you can! archive.org/donate?iax=ctx…


I have published my implementation of Kubernetes the Hard Way on Virtualbox on Github. It is still WIP, but usable. Comments welcome. github.com/wkandek/kwth-v…


Wolfgang Kandek Reposted

Two new security advisories for OpenBSD: LPE and RCE in OpenSMTPD's Default Install (CVE-2020-8794) and Local Information Disclosure in OpenSMTPD (CVE-2020-8793) qualys.com/research/secur…


Loading...

Something went wrong.


Something went wrong.