Josh Bressers

Josh Bressers's avatar
Josh Bressers
joshbressers_at_infosec.exchange@momostr.pink
npub16g6c...s9jn
VP of Security at Anchore - Podcaster (http://opensourcesecuritypodcast.com http://hackerhistory.com) - Blogger (http://opensourcesecurity.io) - He/Him Podcast: https://opensourcesecurity.io/ Web: https://bress.net Cookies?: Yes please TTY: 1 Signal: joshbressers.01
This week on #OpenSourceSecurity I have a chat with @npub17mj5...0mhx about #Anubis, the tool that stops web AI scrapers The scale of web scraping is way worse than I expected, and blocking things is also a lot harder than I expected This is one of those conversations where I learned how little I know
#OpenSourceSecurity has a chat with @npub1klc0...sud3 about @npub1vv84...6fhk security Seth has a new whitepaper, there's a CFP open (which you should submit a paper to), and some discussion about the PSF grant situation It's always fun to chat with Seth, I learn a ton every time!
This week on #OpenSourceSecurity I talk to @npub1uy3s...kphj about his blog post about detecting an attack like xz in Debian It's a fascinating conversation about a very complicated topic There are things that could be detected, but this one would have been very very difficult
OK open source security nerds, I need your help I have a podcast youtube show thing called Open Source Security I'm always looking for guests. Back when I changed formats in January I had a pretty large list of people sent to me as suggestions. I've made it through the list (it took me 10 months) If you know someone (or are someone) doing open source security work I would love a suggestion. DMs are open and there are other contact things on the website I especially like guests who are unsung heroes
The Register wrote a story about a single maintainer open source project, I think it's shameful and upsetting. So I wrote a blog post about it An absolutely ridiculous amount of open source is one person projects. I have the data to prove it