ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.3K
active users

#appsec

22 posts18 participants4 posts today
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“Security Metrics that Matter”<br>📽️ <a href="https://twp.ai/4in9pD" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9pD</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a></p>
OWASP Foundation<p>⏰ Hurry up! June 24th is the last day to submit for the Global <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> USA Call for Presentations! 🌟 Seize the chance to showcase your expertise at this outstanding event. Don't wait, submit now to shine: <a href="https://sessionize.com/owasp-global-appsec-USA-2025-cfp2/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">sessionize.com/owasp-global-ap</span><span class="invisible">psec-USA-2025-cfp2/</span></a> 🎤 <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/devsecops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>devsecops</span></a> <a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OWASP</span></a> <a href="https://infosec.exchange/tags/SBOMM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SBOMM</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>5,000 subscribers for my monthly newsletter, wow! Thank you, all of you, for learning about <a href="https://infosec.exchange/tags/securecoding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securecoding</span></a> and <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> with me! 🥰 The newsletter has come a long way since 2018! </p><p>Join free, here: <a href="https://twp.ai/4ioRIO" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4ioRIO</span><span class="invisible"></span></a><br><a href="https://infosec.exchange/tags/applicationsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>applicationsecurity</span></a></p>
pentest-tools.com<p>Whether you're:<br>👨‍💻 a consultant in need of delivering high-quality reports faster<br>🏢 an internal team scaling risk management<br>📡 or an MSSP managing various client pipelines</p><p>...our integrations help you move quicker, reduce risk, and prove value — without manual overhead.</p><p>Pentest-Tools.com connects seamlessly with:</p><p>✅ Jira – auto-create tickets for high-risk findings<br>✅ Slack / Teams – notify your team only when it matters<br>✅ GitHub Actions – trigger scans in CI/CD before pushing code<br>✅ Vanta / Nucleus – automate compliance &amp; findings management<br>✅ Webhooks / API – build custom workflows with full control<br>and more</p><p>🔭 Explore integrations that match your workflow → <a href="https://pentest-tools.com/features/integrations" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">pentest-tools.com/features/int</span><span class="invisible">egrations</span></a> </p><p><a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <a href="https://infosec.exchange/tags/devsecops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>devsecops</span></a> <a href="https://infosec.exchange/tags/vulnerabilitymanagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilitymanagement</span></a></p>
Sam Stepanyan :verified: 🐘<p><a href="https://infosec.exchange/tags/JWT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JWT</span></a>: 'Attacking JWT using X509 Certificates': how an attacker could sign the JWT token with their own private key and modify the header value to specify their public key for signature verification:<br><a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a><br><a href="https://infosec.exchange/tags/APIsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APIsecurity</span></a></p><p><a href="https://trustedsec.com/blog/attacking-jwt-using-x509-certificates" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">trustedsec.com/blog/attacking-</span><span class="invisible">jwt-using-x509-certificates</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>Exciting news! 🎉 I’ve published my slides for “Security Champions Worst Practices” from my talk at <a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OWASP</span></a> Global <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> in Barcelona! You can grab the PDF, watch a recording, and see fun photos on my blog. <a href="https://infosec.exchange/tags/owaspglobalappsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>owaspglobalappsec</span></a> <a href="https://infosec.exchange/tags/securitychampions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securitychampions</span></a></p><p><a href="https://twp.ai/4in7CG" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in7CG</span><span class="invisible"></span></a></p>
Open Security Conference<p>Wait, what do you mean by "the Open Security Conference is an open space conference"? 🤔 This format might not be familiar with everyone, so we have you covered! </p><p>Check out <a href="https://opensecurityconference.org/open-space/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">opensecurityconference.org/ope</span><span class="invisible">n-space/</span></a> to learn more. 💡</p><p>And in case you need buy-in from your employer, here's some additional inspiration. 😉 <a href="https://opensecurityconference.org/faq/#ive-had-great-experiences-attending-open-space-conferences-yet-my-employer-has-not---do-you-have-any-recommendations-to-convince-them-to-support-me" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">opensecurityconference.org/faq</span><span class="invisible">/#ive-had-great-experiences-attending-open-space-conferences-yet-my-employer-has-not---do-you-have-any-recommendations-to-convince-them-to-support-me</span></a></p><p>P.S.: We'll open the registration soon, and this year's keynote speaker announcements will follow.</p><p><a href="https://infosec.exchange/tags/osco" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>osco</span></a> <a href="https://infosec.exchange/tags/osco25" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>osco25</span></a> <a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> <a href="https://infosec.exchange/tags/ProductSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ProductSecurity</span></a> <a href="https://infosec.exchange/tags/OTsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTsecurity</span></a> <a href="https://infosec.exchange/tags/OpenSpace" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSpace</span></a> [lisi]</p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“Building Security Champions”<br>📽️ <a href="https://twp.ai/4in9p0" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9p0</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <a href="https://infosec.exchange/tags/securitychampions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securitychampions</span></a></p>
Doyensec<p>🚀 We have just released a new Security Advisory for NASA's CFITSIO library 🛰️. Click the link for details on the Heap Overflow, Type Confusion, Out-of-Bound Writes &amp; other vulnerabilities discovered by our Adrian Denkiewicz !</p><p><a href="https://www.doyensec.com/resources/Doyensec_Advisory_CFITSIO_Q22025.pdf" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">doyensec.com/resources/Doyense</span><span class="invisible">c_Advisory_CFITSIO_Q22025.pdf</span></a></p><p><a href="https://infosec.exchange/tags/doyensec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>doyensec</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“Top Ten Security Tips for APIs”<br>📽️ <a href="https://twp.ai/4in9ou" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9ou</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <a href="https://infosec.exchange/tags/APISecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APISecurity</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>Want to learn the absolute basics of application security? Check out this helpful YouTube playlist! <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <br><a href="https://twp.ai/4ilrE0" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4ilrE0</span><span class="invisible"></span></a></p>
OWASP Foundation<p>Hurry! Less than 10 days left until the Global <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> USA Call for Papers closes! 🌟 ✨ Seize the chance to showcase your expertise at this incredible event. Submit your proposals TODAY: <a href="https://sessionize.com/owasp-global-appsec-USA-2025-cfp2/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">sessionize.com/owasp-global-ap</span><span class="invisible">psec-USA-2025-cfp2/</span></a> 🎤 <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/devsecops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>devsecops</span></a> <a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OWASP</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“Shifting Security Everywhere” - Not just LEFT anymore!<br>📽️ <a href="https://twp.ai/4in9oh" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9oh</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“Secret Hunting” - Finding secrets code! <a href="https://infosec.exchange/tags/notgood" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>notgood</span></a><br>📽️ <a href="https://twp.ai/4in9ok" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9ok</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>✅ Virtual-friendly<br>✅ Packages available<br>✅ Built for developers + security pros<br>✅ Fun, funny, and full of practical, actionable advice</p><p>DM or email me for deets! Tanya [AT] shehackspurple [DOT] ca</p><p><a href="https://infosec.exchange/tags/CyberSecurityAwarenessMonth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityAwarenessMonth</span></a> <a href="https://infosec.exchange/tags/SecurityAwarenessMonth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwarenessMonth</span></a> <a href="https://infosec.exchange/tags/SecureCoding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecureCoding</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a><br>3/3</p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>With 25+ presentations to choose from, I cover everything from <a href="https://infosec.exchange/tags/securecoding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securecoding</span></a> and <a href="https://infosec.exchange/tags/threatmodeling" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threatmodeling</span></a> to AI risks and <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a>—always with humor, clarity, and actionable takeaways.</p><p>💡 These aren’t just talks—they’re lessons your team will remember.</p><p><a href="https://twp.ai/9PSP09" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/9PSP09</span><span class="invisible"></span></a></p><p>2/3</p>
SiMpS0N<p>AppSec Ezine - 591st <a href="https://pathonproject.com/zb/?f5f861f45958bf8f#6/m4IZDXG516bMzg6h/NGgkHi1k3gA7+9JU36U321cs=" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">pathonproject.com/zb/?f5f861f4</span><span class="invisible">5958bf8f#6/m4IZDXG516bMzg6h/NGgkHi1k3gA7+9JU36U321cs=</span></a> <a href="https://mastodon.social/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> <a href="https://mastodon.social/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>🎥 Missed one of my past conference talks? Let’s fix that.</p><p>I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.</p><p>“DevSecOps Worst Practices”<br>📽️ <a href="https://twp.ai/4in9of" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4in9of</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://infosec.exchange/tags/appsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appsec</span></a> <a href="https://infosec.exchange/tags/RSAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RSAC</span></a></p>
Simon Roses Femerling<p>Need a powerful and free hex editor? Try our Bytes Revealer and be amazed 😁 We are working hard on next release! <a href="https://bytesrevealer.online" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">bytesrevealer.online</span><span class="invisible"></span></a> <a href="https://infosec.exchange/tags/RE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RE</span></a> <a href="https://infosec.exchange/tags/reversing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>reversing</span></a> <a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> @vulnexsl</p>
OWASP Foundation<p>Only 10 days remaining until the deadline for our Global <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppSec</span></a> USA CfP! 🌟 ✨ Don't miss this opportunity to share your expertise at this amazing event. Submit your proposals NOW: <a href="https://sessionize.com/owasp-global-appsec-USA-2025-cfp2/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">sessionize.com/owasp-global-ap</span><span class="invisible">psec-USA-2025-cfp2/</span></a> 🎤 <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/devsecops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>devsecops</span></a> <a href="https://infosec.exchange/tags/OWASP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OWASP</span></a></p>