⤷ Title: I Took the CGRC Exam, So You Didn’t Have To
════════════════════════
𐀪 Author: Marisa Tranchitella Foltz
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 05:53:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #risk #governance #compliance #infosec
════════════════════════
𐀪 Author: Marisa Tranchitella Foltz
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 05:53:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #risk #governance #compliance #infosec
Medium
I Took the CGRC Exam, So You Didn’t Have To
After 10 Years, I Finally Jumped On the Cybersecurity Certificate Bandwagon
⤷ Title: Explain This: The Thymeleaf Bug That Turned Whitespace Into Code Execution
════════════════════════
𐀪 Author: Karla Ortiz-Flores
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 12:33:37 GMT
════════════════════════
⌗ Tags: #application_security #risk_management #explain_this
════════════════════════
𐀪 Author: Karla Ortiz-Flores
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 12:33:37 GMT
════════════════════════
⌗ Tags: #application_security #risk_management #explain_this
Medium
Explain This: The Thymeleaf Bug That Turned Whitespace Into Code Execution
Thymeleaf’s sandbox bypass shows how a parser edge case can turn a trusted rendering layer into a code execution risk. Explain This: The Thymeleaf Bug That Turned Whitespace Into Code …
⤷ Title: The Docket: CISA’s ActiveMQ KEV Entry Is Really About Exposed Management Surfaces
════════════════════════
𐀪 Author: Karla Ortiz-Flores
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 13:02:07 GMT
════════════════════════
⌗ Tags: #application_security #risk_management #the_docket
════════════════════════
𐀪 Author: Karla Ortiz-Flores
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 13:02:07 GMT
════════════════════════
⌗ Tags: #application_security #risk_management #the_docket
Medium
The Docket: CISA’s ActiveMQ KEV Entry Is Really About Exposed Management Surfaces
CISA’s ActiveMQ KEV entry matters because it turns an exposed management path into a compressed remediation and evidence problem. The Docket: CISA’s ActiveMQ KEV Entry Is Really About Exposed …
⤷ Title: From Threat Profile to Residual Risk: A Practitioner’s Approach to Cyber Risk Assessment
════════════════════════
𐀪 Author: Eran Atias
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 16:47:33 GMT
════════════════════════
⌗ Tags: #ciso #infosec #risk_assessment #cybersecurity #cyber_risk
════════════════════════
𐀪 Author: Eran Atias
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 16:47:33 GMT
════════════════════════
⌗ Tags: #ciso #infosec #risk_assessment #cybersecurity #cyber_risk
Medium
From Threat Profile to Residual Risk: A Practitioner’s Approach to Cyber Risk Assessment
Introduction
⤷ Title: Living With the Weight of This Work
════════════════════════
𐀪 Author: Camila Santos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:59:53 GMT
════════════════════════
⌗ Tags: #vulnerability_management #ethical_hacking #cybersecurity #penetration_testing #risk_management
════════════════════════
𐀪 Author: Camila Santos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:59:53 GMT
════════════════════════
⌗ Tags: #vulnerability_management #ethical_hacking #cybersecurity #penetration_testing #risk_management
Medium
Living With the Weight of This Work
There is a specific kind of pressure that comes with cybersecurity work that is difficult to describe to people outside it. Every…
⤷ Title: The Part of Security Work I Don’t Talk
════════════════════════
𐀪 Author: Camila Santos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 08:09:12 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #mental_health #cybersecurity #risk_management
════════════════════════
𐀪 Author: Camila Santos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 08:09:12 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #mental_health #cybersecurity #risk_management
Medium
The Part of Security Work I Don’t Talk
I do penetration testing for a living. I find the holes before someone with worse intentions does. That’s the job, stated cleanly. What’s…
⤷ Title: Release Decisions as Audit Evidence
════════════════════════
𐀪 Author: André Ataíde
════════════════════════
ⴵ Time: Sun, 10 May 2026 12:20:49 GMT
════════════════════════
⌗ Tags: #software_release #application_security #risk_management #grc #supply_chain_security
════════════════════════
𐀪 Author: André Ataíde
════════════════════════
ⴵ Time: Sun, 10 May 2026 12:20:49 GMT
════════════════════════
⌗ Tags: #software_release #application_security #risk_management #grc #supply_chain_security
Medium
Release Decisions as Audit Evidence
Securing ‘The Chain of Custody’ in Software Releases. Yes, you read that right.
⤷ Title: Ronin Network (Axie Infinity): The $625M Key Management Failure
════════════════════════
𐀪 Author: AnonX
════════════════════════
ⴵ Time: Sun, 10 May 2026 13:01:45 GMT
════════════════════════
⌗ Tags: #grc #business_failure #hacking #blockchian #risk_management
════════════════════════
𐀪 Author: AnonX
════════════════════════
ⴵ Time: Sun, 10 May 2026 13:01:45 GMT
════════════════════════
⌗ Tags: #grc #business_failure #hacking #blockchian #risk_management
Medium
Ronin Network (Axie Infinity): The $625M Key Management Failure
In March 2022, the Ronin Network — the blockchain underpinning Axie Infinity, one of the most successful Web3 games ever — suffered one of…
⤷ Title: How I Turned a CVSS 10.0 Vulnerability into a Boardroom Business Case
════════════════════════
𐀪 Author: Ibrahim Olaniyi Abiodun
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:39:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #penetration_testing #risk_management
════════════════════════
𐀪 Author: Ibrahim Olaniyi Abiodun
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:39:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #penetration_testing #risk_management
Medium
How I Turned a CVSS 10.0 Vulnerability into a Boardroom Business Case
Why finding a CVSS 10.0 vulnerability is only half the job — and how I translated technical flaws into financial risk during my graduation…
⤷ Title: 165 Enterprise Breaches. Zero Exploits. One Governance Failure.
════════════════════════
𐀪 Author: Kush Patel
════════════════════════
ⴵ Time: Tue, 19 May 2026 18:18:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #data_governance #cloud_computing #risk_management #hacking
════════════════════════
𐀪 Author: Kush Patel
════════════════════════
ⴵ Time: Tue, 19 May 2026 18:18:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #data_governance #cloud_computing #risk_management #hacking
Medium
165 Enterprise Breaches. Zero Exploits. One Governance Failure.
What the 2024 Snowflake credential campaign reveals about the identity governance gap hiding inside your cloud security program