Ænna Westelius :donor:

Skandi export | She/Her | LLC 🏳️‍🌈 | Director of Security @ Netflix | Chaotic Good | opinions are my own
/slowly migrating from twitter/
Donor for infosec.exchange: :donor:

Ænna Westelius :donor: boosted:
2022-12-29

@particles So before #LastPass increased the iteration count to 100,100 they had 5,000. Before they increased the iteration count to 5,000 they had 500. And before they increased the iteration count to 500 they had 1.

And apparently they failed at updating people’s security settings at each and every step. So your mom is the “lucky” one who has her account configured with 1 PBKDF2 iteration. Which offers close to zero protection today.

That’s the company people trust with their passwords. And keep defending because “it’s all encrypted.”

Ænna Westelius :donor: boosted:
Abandoned AmericaAbandonedAmerica
2022-12-26

The older I get, the more aware I am that being critical rather than enjoying things is not a sign of intelligence or wisdom. Not loving things - movies, art, music, people, situations - because of their weaknesses doesn't make you better than them, it means you're unable to see past imperfections. Sure, some things absolutely are bad & should be left behind - but being hypercritical denies you joy. I need reminded of this every day. Too many things are legit bad to throw out good ones too.

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-12-23

@mainframed767 love that game

Ænna Westelius :donor: boosted:
2022-12-17

We normally promote the conference Tech Intersections: Women of Color in Computing on #Twitter but won't this year for obvious reasons.

Please help us spread the word about this #bipoc conference in #Oakland #California.

We're offering 20% off with promo code MASTODON. #BlackMastodon #BlackFriday

We are giving free tickets to people who have been laid off with promo code LAIDOFF.
techintersections.org

The event includes an #ally skills workshop for supporters of #woc.

Purple-hued banner with large text "Tech Intersections January 28, 2023". Seven smiling Black and brown women are pictured with a variety of hairstyles and attire. There is a URL: www.techintersections.org
Ænna Westelius :donor:bubblewire@infosec.exchange
2022-12-17

@SheHacksPurple Awh, thanks 🖤 we appreciate you! And yes, haha, I am the other voice 😂

Ænna Westelius :donor: boosted:
Tanya Janca | SheHacksPurple :verified: :verified:SheHacksPurple@infosec.exchange
2022-12-17

Just listened to Episode 2 of the '404: Security Not Found' podcast with Clint Gibler, Leif Dreizler, Travis McPeak and more cool people who's voices I couldn't recognize. They chat Uber CISO Trial, Twitter Apocalypse, "Hot Goss", and ....all sorts of breach-y goodness.

resourcely.io/podcast/2

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-12-16

We're expanding our Detection Engineering team at Netflix. If you, or someone you know, are looking for opportunities in the detection space - feel free to reach out if you have any questions, or apply directly via the jobs site.
jobs.netflix.com/jobs/23907816
❤️

Ænna Westelius :donor: boosted:
2022-12-12

The Enigma conference is coming! Jan 24-26 in Santa Clara, CA
a) you should definitely go (I'm speaking, but the program is amazing)

usenix.org/conference/enigma20

b) the deadline for grants is *tomorrow*. Folks who identify as female or who are members of groups underrepresented in tech are encouraged to apply now.

usenix.org/grant-programs

Ænna Westelius :donor: boosted:

Today's adventure
#photography #forest #woods #snow

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-11-25

@sarahyo Awh! Such FOMO - hope @fr said many smart things 😌

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-11-24

@malwareunicorn exquisite ✨

Ænna Westelius :donor: boosted:
Lëspreühlespreuh
2022-11-23

🐸

Dessin d'un crapaud portant une couronne,  un sceptre et une capeDessin d'une mignonne petite grenouille aux motifs mystiques sur le dosDessin d'une mignonne créature mi-grenouille mi-tardigradeDessin d'un iguane paré de bijoux et d'une cape
Ænna Westelius :donor: boosted:
Rodney Orpheusrodneyorpheus
2022-11-23

Astonishing.
---
RT @fasc1nate
A demonstration for how silently owls fly vs. other birds.
twitter.com/fasc1nate/status/1

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-11-23

@coleens_ yes, and I’ve also appreciated “Sapphic” as inclusive of wlw and wlnb 🖤

Ænna Westelius :donor: boosted:
2022-11-23

Tailscale has recently been notified of security vulnerabilities in the Tailscale Windows client which allow a malicious website visited by a device running Tailscale to change the Tailscale daemon configuration and access information in the Tailscale local and peer APIs.

To patch these vulnerabilities, upgrade Tailscale on your Windows machines to Tailscale v1.32.3 or later, or v1.33.257 or later (unstable).

tailscale.com/blog/windows-sec

Ænna Westelius :donor: boosted:
Santa ClausSantaclaus@c.im
2022-11-22

Oh dear. I've just been informed that collecting the names of every person on the planet for my naughty and nice lists is, and I quote, “a significant and wholly irresponsible breach of #GDPR “.
I'm going to hand out about 8 billion consent forms soon. If you could all get them back to me ASAP that would be appreciated.

Ænna Westelius :donor: boosted:
2022-11-22

Thanks 1% to my complaining and 99% to the people who actually did it, certutil -DeleteHelloContainer is now officially documented.
Useful for a complete reset of Windows Hello biometrics/FIDO/WebAuthN and associated metadata. Must be run in user context. @markmorow
learn.microsoft.com/en-us/wind

Ænna Westelius :donor: boosted:

Them: Faving posts on Mastodon is useless, only the OP sees it.

Me, when a post gets faved: awwww, little internet hug ✨

Ænna Westelius :donor:bubblewire@infosec.exchange
2022-11-21

@andrewkrug had such a good time! So nice to hang out :)

Ænna Westelius :donor: boosted:
Andrew Krug | Democratizing Securityandrewkrug@infosec.exchange
2022-11-21

Great time this week at #appsecusa by #owasp hearing from folx like @bubblewire about paved road and highways!
@Datadog@twitter.com 's Ellen Wang released an open source tool called #GuardDog from #securitylabs that helps detect malicious python packages using #semgrep.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst