WitchyPurpleSec's Avatar

WitchyPurpleSec

@witchypurplesec.bsky.social

InfoSec "professional" | privacy advocate | public speaker | nerd | podcaster https://witchypurplesec.com/ Mentally I'm in the hit 90's film Hackers at all times On a voyage for the One Piece

9 Followers  |  37 Following  |  35 Posts  |  Joined: 30.09.2025  |  1.6511

Latest posts by witchypurplesec.bsky.social on Bluesky

Just being on the web store for download shouldn't give extensions a pass on you personal or professional security review. It's still worth doing your research and understanding what the extension does before you use it. The requirements for publishing to the store may not cover your risk appetite.

24.12.2025 14:37 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I always found it so odd that Microsoft's out of box configuration was basically a house with every door and window open. Its so easy to miss a configuration setting during an initial deployment that could create a security nightmare down the road. I feel like this is a step in the right direction.

23.12.2025 15:24 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Great now I'm suspicious of both cats and zebras.

22.12.2025 18:46 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

New year ahead, fresh momentum. Take 40% off everything with code HOLIDAY40 and fill your shelf with books that help you build real skills and reach the next milestone you’ve been working toward. Ends Jan 2 at 11:59 PM PST.

nostarch.com

18.12.2025 19:04 β€” πŸ‘ 7    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
A promotional image announcing the users speaking engagement at the 2026 RSA Conference in March. The event takes place in San Francisco at the Moscone Center March 23rd to March 26th.

A promotional image announcing the users speaking engagement at the 2026 RSA Conference in March. The event takes place in San Francisco at the Moscone Center March 23rd to March 26th.

I've been selected to speak at #RSAC 2026! This year I'm covering two different topics. One session covering #CyberSecurity strategy and one on #Governance. More to come as we get closer to the event!

#GRC #InformationSecurity #Conferences

17.12.2025 16:32 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

I think it's just music made by poorly constructed AI models that literally think its just the sound of different items banging metal in a 10 minute mp3 you can only download by providing them your social security number.

17.12.2025 15:58 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

At the intersection of this privacy and security issue there is... sadness... and photos from your wedding probably...

It's weird how people forget that privacy issues can become security or safety issues.

12.12.2025 17:09 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I went from IT to SysAd to CyberSec. I see a lot of people say you "have" to do SOC first to break into #cybersecurity but that's not true. The same path doesn't have to work for everyone. In this persons case I would take the SysAd role in a heartbeat but that's what works for me.

11.12.2025 18:59 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Maybe its just late in the day or I'm cranky or something but... why did they even HAVE SSNs? I guess maybe if they had some sort of store credit card (or financing) or they needed it to provide vet services for some reason? I just can't think of a good reason for them to have that data.

10.12.2025 22:11 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
IntelTechniques Resources

Definitely not awesome. You could try checking HaveIBeenPwnd and Dehashed to see if your passwords are out there. If you want to get really strict you could use something like the free IntelTechniques guides to remove whatever is out there to your comfort level. inteltechniques.com/links.html

10.12.2025 22:03 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

OWASP continues to be a guidepost and key resource pool for baselining your security. With the rapid adoption of AI and teams struggling with budgets their AI Top 10 publications are going to be invaluable over the next several years.

genai.owasp.org/2025/12/09/o...

10.12.2025 21:47 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Happy RSAC Speaker Selectionmas to those who celebrate. I hope Santa Hugh Thompson and the rest of the RSAC elves brought you the speaking engagement confirmation you were hoping for.

10.12.2025 19:06 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Nothing says we care about safety and security like requiring an 18 year old to pass over photos of their ID to a social media company with zero privacy plan so they can... *checks notes... receive direct messages?

Can't see that becoming a security or privacy breach that will haunt them forever.

10.12.2025 13:53 β€” πŸ‘ 10    πŸ” 7    πŸ’¬ 1    πŸ“Œ 0

"While companies often highlight research that benefits them, today’s leading AI labs are given an unusual level of authority to self-report the risks and capabilities of the technology they’re racing to deploy." Is heavy quote that summarizes just a single oddity (issue) around AI and business.

09.12.2025 21:23 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

We've normalized sharing photos of our friends and families for so long this is an unfortunate but not entirely unexpected consequence. Always contact your loved ones directly if you think there's a problem and agree on a secret password or phrase only your loved ones know to prove it's you.

08.12.2025 21:47 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

#OnThisDay in 1981, Simon & Simon aired β€œTrapdoors”—likely the first non–sci-fi depiction of computer hacking on US TV. πŸ’»πŸ“ž
Teen Robbie Rist uses an Apple II + acoustic modem to access a bankβ€”2 years before β€œhacker” hit mainstream media.
A proto-Whiz Kids story from creator Phil DeGuere.

08.12.2025 16:50 β€” πŸ‘ 17    πŸ” 8    πŸ’¬ 3    πŸ“Œ 0

I was recently watching a YouTube video that reminded me that Julia Stiles played a hacker character on Ghostwriter in the early 90s. I used to love that show and I cannot believe I forgot that was a thing that happened. She was also like 12 with a nose ring so you know she meant business.

08.12.2025 20:58 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

There is no rule book for getting into CyberSec. Every person I've ever talked to had a different path and they vary wildly. What matters is that you are eager to learn and help. A good manager will recognize that and hire you in a second. Skills can be taught but your heart and drive are yours.

08.12.2025 20:53 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Someone should make a isdowndetectordown website, and then also put it on cloudflare.

05.12.2025 09:04 β€” πŸ‘ 5    πŸ” 4    πŸ’¬ 1    πŸ“Œ 1
A skeleton and a ghost sit by a fire in the woods playing with a computer and a cell phone. Floating text above them says The Spooky Cyber Story Club. The art was created as the cover art for The Spooky Cyber Story Club (a cybersecurity podcast) and was done by an artist on Fiverr.

A skeleton and a ghost sit by a fire in the woods playing with a computer and a cell phone. Floating text above them says The Spooky Cyber Story Club. The art was created as the cover art for The Spooky Cyber Story Club (a cybersecurity podcast) and was done by an artist on Fiverr.

I commissioned new art for The Spooky Cyber Story Club podcast! I worked with an actual human artist on Fiverr and I couldn't be happier with the results.

You can listen on most major platforms or on my RSS site:
rss.com/podcasts/the...

#HumanArt #CyberSecurity #Podcast #CyberHorrorStories

05.12.2025 18:29 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
a close up of a young boy 's face with the number 3 in the background ALT: a close up of a young boy 's face with the number 3 in the background

Kevin McCallister is a social engineer. Look at how he handles the grocery store clerk in Home Alone and his entire hotel scheme in Home Alone Lost In New York.

#Cybersecurity #Holidays #SocialEngineering #Hacker

01.12.2025 13:58 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

If you aren't 100% sold on giving my new #Cybersecurity podcast a listen. Maybe this short clip will help you decide if the remaining 10 minutes is worth your time. The Spooky Cyber Story Club is available on most major podcasting platforms.
rss.com/podcasts/the...

22.11.2025 18:44 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Holiday Hack Cybersecurity Challenge 2025 | SANS Institute Join the global cybersecurity community in the most festive and challenging event of the year! The SANS Holiday Hack Challenge cyber range offers FREE, high-quality, and super fun hands-on cybersecuri...

If you are looking for a fun (free) team building opportunity or you like game/challenge based learning the #HolidayHack challenge is live now and always a blast.

#CounterHack #CTF #KringleCon

www.sans.org/cyber-ranges...

07.11.2025 18:31 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

While my podcast logo is a bit basic and rough now I'm hoping to have something better by next episode. I've actually had some stellar experiences on Fiverr so I'm commissioning something there. I know AI could make me... something... but I'd prefer a human artist.

04.11.2025 22:13 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Thinking about swapping my phone out for a newer device (last years model) so I can run a security focused OS full time. I already use a privacy focused OS on my travel phone so I think im ready to go full time on my primary device.

04.11.2025 15:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
The Spooky Cyber Story Club | Podcast on RSS.com The Spooky Cyber Story Club is here to cover all of your cybersecurity horror stories. Instead of monsters, madmen, ghouls, and ghosts, The Spooky Cyber Story Club covers breaches, incidents, hacker e...

It's Halloween! So it's a great day to announce my new horror themed #cybersecurity #podcast, The Spooky Cyber Story Club! In future episodes I'll be interviewing CyberSec, InfoSec, and Red Team professionals to discuss their cyber horror stories.

rss.com/podcasts/the...

31.10.2025 13:11 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
a picture of a fire in the woods was taken by a person named the black ALT: a picture of a fire in the woods was taken by a person named the black

Dropping a fun project on Friday that mixes my beloved Halloween vibes with #Cybersecurity. I'm pumped to get spooky and help out the CyberSec and InfoSec communities at the same time.

28.10.2025 19:33 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Always remember AI needs a human element. We have to stop acting like it's infallible. I truly belive we aren't in the Trough of Disillusionment yet. When it comes to AI it feels like the Peak of Inflated Expectations is long and arduous because of the its perceived simplicity and ROI.

25.10.2025 19:25 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

If you run into anyone who works at Amazon on the AWS team today give them a hug and buy them a beer because this probably wasn't a great day.

20.10.2025 21:01 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

It's wild (and terrifying) to see just how much of our personal and working life are impacted by a single vendor.

20.10.2025 15:54 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@witchypurplesec is following 20 prominent accounts