● SYSTEM ONLINE Tuesday September 29, 2026 00:00:00.00
// LOG INTERCEPT: "this generation of developers has access to more tools than any other time in history...."// LOG INTERCEPT: "A Security Questionnaire, RFI, VRA (Vendor Risk Assessment), VR Management…helps customers identify and evaluate the..."// LOG INTERCEPT: "When “Check-the-Box” Fails Most companies today live in a dream world. They think that passing..."// LOG INTERCEPT: "If you believe a final penetration test is the gatekeeper of your security, you are..."// LOG INTERCEPT: "one of the main reasons Security community has hard time securing “stuff”, is lack of..."
SYS.DATE: 2021.09.04 2 min read

utilizing dark web as defense

I was shocked when I heard from a “security professional” that using dark web as means understanding cyber threats has been Just Recently been discovered by them as an effective defense mechanism! no kidding! then why we are surprised we get hacked by the most trivial TTP out there? this is very disappointing that “security […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.08.29 2 min read

endpoint protection won’t work!

any solution 100% focused on endpoint protection would not actually protect you from cyber threats. best case scenario, you will discover IoC (not even necessary IoA) after the fact, after a system has actually been compromised. the easiest way to confirm this is what is happening everyday in companies with sophisticated but pure endpoint detection […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.08.14 1 min read

cybersecurity and culture

Cyberspace // Safety // August 14, 2021

different cultures have different perception and reaction to cybersecurity matters because cyberspace is as diverse as real life and it consists of and affected by all cultures involved. cultures are not significantly different in terms of understanding and identification of behaviors of their members. for example being lazy may have slightly same definition in multiple […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.07.27 1 min read

you won’t get there without knowing the truth!

one of the main reasons Security community has hard time securing “stuff”, is lack of understanding of Hackers community. without knowing motives, the motivations behind breaking into computer systems, and deep knowledge of hacking and cracking techniques, securing a system is pointless. results are telling us every single day that we are not doing the […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.07.04 2 min read

zero-trust: reselling old under a different name

the market has been acting as a reseller since late 90’s. we simply resell an old solution under a different shiny name again and again. one of the best examples is zero trust. with all noises around this concept, poor desperate companies waiting to resolve their security issues, or perhaps thirsty budgets waiting to find […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.06.23 1 min read

Virtual NATO

Cyberspace // Safety // June 23, 2021

It is very late for international community to act on fighting against Ransomware and Cyber-crime in general but still anything better than nothing. EU and US coordination on fighting ransomware reminds me of NATO foundation back in 1949. perhaps countries could have considered cyber crime a “global issue” sooner and act faster against organized international […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.06.21 3 min read

Does AI help us in security operations?

Coding // Security Governence // Security Tools // June 21, 2021

it does but only if it is originated from a intelligent programmer. AI is as smart as the people who did its modeling. an artificial intelligence cannot be more intelligent than its origination. presuming AI will be helping us securing cyberspace is like presuming we will have a accurate Accounting system or flawless GL just […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.06.02 2 min read

Relying on SAST/DAST

Relying on DAST/SAST is like investing in a restaurant where chef needs to be reminded of how to safely handle knife. no surprise that software developers have been dragging computer end-users to current situation when software products are no longer reliable, or they are packed with vulnerabilities. I have mentioned before that I believe the […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.05.28 2 min read

Compliance ≉ Security

Security Management // May 28, 2021

there are hundreds of security frameworks out there, all somehow accredited and accepted by industry, all good, but compliance with any, or even all of them does not mean anything to state of security, does not affect the state of security and it is not a metric for security. being compliant is different than being […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.03.08 2 min read

is security really a journey?

you have probably heard or even sick of it: security is a journey…it never ends…security is not a destination…yada yada is security really a journey, or let’s say, does it have to be an endless journey where we actually do not enjoy or even hate to have such a journey? security as a journey yes […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.03.04 2 min read

*DR

security community has been certainly obsessed with creating a new acronym every day instead of focusing on techniques and enhancing what is already there. basically we do not even try to enhance any thing, we just need to understand definitions and satisfy what has already been stated. XDR is one of those things now particularly […]

[ READ TRANSMISSION → ]
SYS.DATE: 2021.02.28 2 min read

is Dark Web really dark?

it has been relatively a long time since threat intelligence sources started to integrate what they call as “dark web” into their system of data/intelligence gathering, prioritization and delivery as a service to threat hunters. nothing really wrong with that, it is actually a reasonable and even crucial part of any threat hunting system, but […]

[ READ TRANSMISSION → ]