close
Skip to main content
devsecops u/devsecops avatar

devsecops

u/devsecops

Feed options
Hot
New
Top
View
Card
Compact

Good article and a serious problem for scaling software security. The art of determining the strength of security controls needs simplification.


This is a major step forward for cloud compute and making it possible to do more with cloud platforms. It answers the question of who owns the keys and reduces risks associated with cloud exfiltration which are yet to be answered.


My Keybase proof [reddit:devsecops = keybase:devsecops] (28Q0IVS_ylf798xV6hqY1ADfTf1c-aXiCmRf-ygo5Yo)
Image
r/KeybaseProofs
My Keybase proof [reddit:devsecops = keybase:devsecops] (28Q0IVS_ylf798xV6hqY1ADfTf1c-aXiCmRf-ygo5Yo)

Keybase proof

I hereby claim:

  • I am devsecops on reddit.

  • I am devsecops on keybase.

  • I have a public key whose fingerprint is F082 8DF3 345E E648 F1B2 5598 660C A7F6 7E4C DE27

To claim this, I am signing this object:

{
    "body": {
        "key": {
            "eldest_kid": "01209ed19e2b6f6ae3a4b94189c6e6beab796d0f318427580bd232b2402b8fd99d6b0a",
            "fingerprint": "f0828df3345ee648f1b25598660ca7f67e4cde27",
            "host": "keybase.io",
            "key_id": "660ca7f67e4cde27",
            "kid": "0101c52c51e0d8451451366a9710957df899275088219e979855d2388d9075600bdd0a",
            "uid": "da0a67a1d01482326c00ceb65117d819",
            "username": "devsecops"
        },
        "service": {
            "name": "reddit",
            "username": "devsecops"
        },
        "type": "web_service_binding",
        "version": 1
    },
    "ctime": 1470598435,
    "expire_in": 157680000,
    "prev": "f670342240981724574c6339db4ec853ca6ca5e644d9f39f413740683b8eeb28",
    "seqno": 13,
    "tag": "signature"
}

with the key from above, yielding:

-----BEGIN PGP MESSAGE-----
Version: Keybase OpenPGP v2.0.55
Comment: https://keybase.io/crypto
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==
=c3rH
-----END PGP MESSAGE-----

Finally, I am proving my reddit account by posting it in r/KeybaseProofs