Company Blog

More on comics and security

I’ve written before about how useful comics can be in security training. See a previous blog entry here. In that brief article, I called out some of Markus Schumacher’s training animations. I’m pleased to report that Markus has asked Cigital to host some of his material. Here are some links: Example 1: Car Auction Example [...]

Answering Security Questions in Context

Developers often ask security folk, “Hey, how do I protect credentials in config/property files?” or “Do I need to encrypt my production binaries?” I admire their asking security for help, but often times 1) they’ve not asked the question well enough to get a good answer and 2) security folk have a hard time getting [...]