Mark Nunnikhoven

Mark Nunnikhoven

Latest

Exposing Secrets In Code
Archive ·

Exposing Secrets In Code

A recent study by NCSU found that there are way more API keys and tokens uploaded to GitHub than previously thought. In fact, there's almost a near constant stream of secrets being exposed...why?!?

Stadia & Secure Access Design
Archive ·

Stadia & Secure Access Design

Google recently announced a new, all-in-the-cloud gaming service called Stadia. For gaming fans, there's a lot of potential that—fingers crossed—hopefully pans out.

Cybersecurity Needs Coders
Archive ·

Cybersecurity Needs Coders

An interesting op-ed from Dr. Egginton at John Hopkins University highlights some efforts underway in the US to declare learning to code the equivalent of learning a new language.

Cloud Costs & Security
Archive ·

Cloud Costs & Security

A recent survey from RightScale showed a lot of confusion around cloud computing costs. The common take away? Organizations are surprised at how high their cloud bills are. Similarly, the community was surprised at the size of Lyft's commitment to AWS (around 8 million per month).

Services & Privacy Perceptions
Archive ·

Services & Privacy Perceptions

A recent tweet called out a user's perception about Grammarly, a SaaS-based grammar and writing tool. They accused the service of being predatory (due to it's license) and a keylogger. While the points are off base (but not insanely so), they do raise a bigger issue: the user perception

The Cybersecurity Industry
Archive ·

The Cybersecurity Industry

I you were just starting to try and understand the cybersecurity problem space, a CEO or CIO working to better grasp the challenges facing your organization, how would the industry look? Would you be able to spend wisely? To make decisions taht would actually improve the security of your organizati

Warrant Canaries
Archive ·

Warrant Canaries

We rely on some digital services for critical functions around security and privacy. Trusting those services is paramount to their success and ours. But it can be difficult to trust when you don't know what's going on behind the scenes. Gag orders from the courts can amplify those trust

Secret App Telemetry
Archive ·

Secret App Telemetry

Websites, apps, and even your desktop applications may be tracking a how lot more of your behaviour than you think. The reason in most cases is simply to deliver a better application from a technical perspective. But sometimes, it's more insidious.

Your Child's Digital Identity
Archive ·

Your Child's Digital Identity

You're building out a digital identity for you kids almost from the day they are born. But it's not just you, the clubs they belong to, schools they attend, and sports they play are all contributing. What's the impact to your child? To their digital future?

DNS Hijacking
Archive ·

DNS Hijacking

There has been a significant increase in DNS hijacking attacks over the past couple of months...and why not? It's a simple, direct way for cybercriminals to take over an organizations identity or to intercept critical communications.

Terms of Service
Archive ·

Terms of Service

You agree to new contracts all the time but you probably don't think of them as contracts, they are simply the "Terms of Service". A recent study found that most of these agreements are essentially unreadable. That sets up a one-sides relationship between the services and their us

Canadian Election Cybersecurity
Archive ·

Canadian Election Cybersecurity

Cybersecurity is a major topic when it comes to modern elections. With Canada probably going to the polls in the fall, discussion is heating up about the potential impact of cybersecurity this election cycle. The good news? Canada's election infrastructure is well protected. The challenge wil