The Triad of Security

In the news lately I’ve seen multiple news stories where security breaches have been discussed. Most of them have followed sensitive data being disclosed after a company has been hacked. In cybersecurity usually categorise a vulnerability or incident based on its impact, and to do so we use the CIA triad. NO, CIA in this case does not stand for Central Intelligence Agency. In this case CIA stands for the three kinds of impact a vulnerability can have, Confidentiality, Integrity and Availability....

December 1, 2020 · 3 min · Oskar Edbro

a Journey from Technical Debts to Risks

Technical debt has become a common term when discussing the quality and maintainability of code. There are a lot of definitions of the debt, but they all have some things in common, that debt are the things in the solution that should be fixed but haven’t been fixed yet. This could include everything from lack of documentation or test coverage to code complexity. The debt might not have been there from the beginning, but rather been introduce while the solution grows....

August 20, 2020 · 5 min · Oskar Edbro

Clicking on Links, What are the Risks?

One of the most common tips you hear in regard to security is to not click links, but how malicious can a link be in this day and age? In this article I’ll discuss the risks I see and what impact they may have, to initiate a discussion about these risks. The thing about the internet today is that everything is links, and many sites such as twitter and use link shortening to track usage and hide the original address....

June 18, 2020 · 3 min · Oskar Edbro