Devs that won’t secure internal system really need to take another course on Zero Trust Architecture. Like what makes think that a threat actor can’t compromise one system to get internal and then compromise more systems.
2025-07-20 16:32:06
2
charic4eva :
Great! You'll hire me!? I can be in Colorado by end of year!
2025-07-20 16:49:44
1
steviemerrill210 :
oftentimes I feel like the most difficult problem you will face is convincing a stakeholder why an issue is important.
2025-07-20 14:38:04
17
sec_lukemair :
it's the ol' "need the brakes looking at" scenario...
need to get my brakes looked at
"How do you know, you're not a mechanic"
No but I know how the car should behave, and that's not the behaviour I'm seeing.
Can be used in many scenarios I guess
2025-07-20 15:50:47
2
Gentech :
risk analysis, working with the network team, user training, clearing user code and api usage, making sure your user base is comfortable coming forward with questions... I could go on forever. I agree with your statement.
2025-07-21 07:11:20
1
mr.e.crocker :
Moving laterally through a system is not internal it’s an external exploit of an internal flaw
2025-07-22 16:53:15
1
xtrmzero :
this is the most pertinent opinion I've seen. thank you!
2025-07-21 05:31:33
1
Carter2565 :
All great points. Even if it’s internal should be some level of secure.
2025-07-20 14:35:03
2
somebody :
I've always found my ability to detect undocumented attack vectors and security loopholes more valuable than knowing how to run a piece of exploit software. Knowing which doors to lock secures the treasures.
2025-07-20 18:35:18
1
:
I need training on everything plz hire me
2025-07-20 16:10:53
1
Brian.MillerII :
Purple team is a solid choice for good skills. If someone was to gain a foothold then privileged escalation happens, thats a pretty common attack vector. A good number of attacks like that have happened in recent months
2025-07-20 15:10:03
1
Brian Lague :
go I'm hired! yeah I am way to undersigned so I'm a perfict tech to shape and twist as you please 😆
2025-07-22 21:09:37
1
laOrejaDeVanGogh :
Bro hire me it’s been 8 months since I graduated 😭
2025-07-20 17:50:25
1
Henrik Peltonen778 :
Could your site be in the blast radius of an internal system if it were compromised? Just fix the thing. If you don't, sign here to accept liability and acknowledge that your system is now classed as higher risk. Thank you and have a nice day.
2025-07-20 16:47:38
1
se7en :
Exactly why if I have to elite hacker skills I would not work a 9-5 but have my own business because like you and others they outsource
2025-07-20 15:41:28
1
Kathel :
Idk if you remember me from like a year ago, I’m a cyber defense engineer now. I think people tend to forget that cybersecurity is a broad term of employment vs just being a red teamer. It’s incredibly diverse and that’s what makes it so beautiful for me. It is in fact better to know how to defend first and have a comprehensive understanding vs wanting to be an OS specialist first
2025-07-20 15:12:25
1
roman :
are you a karate 🥋 master
2025-07-20 15:54:18
1
Darren :
A premise of zero trust is someone is already inside network poking around. All systems internal and outward facing need protection. That’s my two months of learning tells me anyway.
2025-07-20 15:18:30
1
S@v4nn4v@S :
Okays hire me please 🙋🏻♂️
2025-07-20 20:26:05
1
Space Christ :
Who is they 😂
2025-07-21 08:48:04
1
ihopipopiflipflop :
Your example seems poor because “You need to fix it” is such a terrible approach to cross team communication. Lay out the business impact, set expectations and set time frame.
2025-07-20 18:21:48
1
RedPandaXL :
I guess people would ask the difference between security hardening and blue teaming when you talk about defense. With the growth of htb I think a lot of people just don’t find blue teaming to be fun scenarios.
2025-07-20 14:57:59
1
Cosmo :
Lateral movement 🛡️
2025-07-23 01:13:50
1
Signal :
I earned casp (from wgu) and even though the content focuses alot on attacking vectors its great as blue teamer to know
2025-07-20 15:55:59
1
bryan.lucas71 :
You mean like the guy I worked with who created a PHP site with a MySQL database and opened it to the world?
2025-07-21 04:47:17
1
To see more videos from user @cryptoknightus, please go to the Tikwm
homepage.