InfoSecSherpa 🏔️
@infosecsherpa
#Librarian turned #InfoSec & #DataPrivacy practitioner. #Philly area hoagie mouth. InfoSecSherpa and Sherpa Intelligence: Your Guide Up a Mountain of Information! Portfolio: #GoBirds
"OAuth is an authorization standard that lets applications access protected APIs without directly handling user passwords. It uses access tokens, scopes, and authorization flows to control what an application can do, for how long, and against which resources." go.aembit.io/s/what-is-oa...
"This guide compares 10 prominent vendors, explains where each fits and identifies the questions buyers should ask about authentication, credentials and runtime enforcement." go.aembit.io/s/10-identit...
XM Cyber: "#Cybersecurity leaders must focus on reducing how long critical assets remain exploitable, assign clear ownership for fixing them, and measure success by how quickly exposures are removed compared to how fast attackers can act." api.cyfluencer.com/s/are-you-le...
Basecamp Briefing: July 23, 2026 🏔️ Data Privacy, Information Security, and Threat Intelligence news and items of note that you may have overlooked. Curated by Sherpa Intelligence. sherpaintelligence.substack.com/p/basecamp-b...
Basecamp Briefing: July 22, 2026 🏔️ Data Privacy, Information Security, and Threat Intelligence news and items of note that you may have overlooked. Curated by Sherpa Intelligence: Your Guide Up a Mountain of Information. sherpaintelligence.substack.com/p/basecamp-b...
Basecamp Briefing: July 20th 🏔️ #DataPrivacy, #InfoSec, and #ThreatIntel news and items of note that you may have overlooked. Today's newsletter: - #AI Prompt Injections - airline sued for weak #cybersecurity - patents for #InfoSec & #CTI tools sherpaintelligence.substack.com/p/basecamp-b...
Read this insight from Patrick Spencer of Kiteworks from June 23, 2026. "Microsoft 365 Copilot SearchLeak (CVE-2026-42824): When Your #AI Assistant Becomes an Exfiltration Tool" 🫨 cybersec.kiteworks.com/s/microsoft-...
Basecamp Briefing: July 16, 2026 🏔️ Data Privacy, Information Security, and Threat Intelligence news and items of note that you may have overlooked. Curated by Sherpa Intelligence: Your Guide Up a Mountain of Information. sherpaintelligence.substack.com/p/basecamp-b...
From Token Security (June 22nd) - "Why We Built This We created the AI Privilege Guardian to provide AI agent builders and security teams with a simple tool to ensure that agents are properly scoped and permissioned." api.cyfluencer.com/s/ai-privile...
Subscribe now and don't miss out tomorrow morning! Basecamp Briefing: Monday, July 13, 2026 - #DataPrivacy, #InfoSec, and #CTI news and items of note that you may have overlooked. Curated by Sherpa Intelligence: Your Guide Up a Mountain of Information. sherpaintelligence.substack.com/p/basecamp-b...
"Is Automated Penetration Testing Safe to Run in Production? Automated pentesting stays safe in production by controlling how far each exploit runs, not by avoiding real exploitation." from Picus Security cybersec.picussecurity.com/s/is-automat...
"Data Engineering for #Cybersecurity, Part 2: Collection and Storage. The Data Engineering for Cybersecurity series from Monad dives into how #security teams collect and store #data at scale." api.cyfluencer.com/s/data-engin...
"Free thinking requires a free press. For one week only, access all foreignpolicy.com has to offer with a simple email registration. No fees, no credit card required."
"The @philadelphiaunion.com ⚽ , in collaboration with Venezuelan soccer player Jesús Bueno, are organizing a relief drive to support families in #Venezuela, affected by the earthquakes." u-serve.galaxydigital.com/need/detail/...
Your #InformationSecurity and #DataPrivacy Basecamp Briefing for Friday, June 26, 2026. open.substack.com/pub/sherpain...
Recorded webinar, "Modern Exposure Validation in the #AI Era." Excerpt: "Here's the hard truth: finding exposures was never the problem. Proving which ones an attacker could actually use, and deciding the right call on evidence, is the hard part." cybersec.picussecurity.com/s/modern-exp...
Thank you to "The Cyber Voice" for having me as the inaugural guest for this new podcast! Next episode drops on June 24th! www.youtube.com/watch?v=iL-9...
What Is an Autonomous Penetration Testing Platform? An autonomous penetration testing platform is a system in which a coordinator orchestrates specialist AI agents that scope an engagement from an incoming signal. cybersec.picussecurity.com/s/what-is-an...
Thank you 😅 I'm now at 667, but I'd love to see more subscribers (free or otherwise!) Join the Climb! sherpaintelligence.substack.com
Help me move off of this subscriber number, 🫣 I don't want or need any bad juju 👀😅 sherpaintelligence.substack.com
Après-climb: the Security + Privacy Weekend Magazine for June 6-7, 2026 Your weekend magazine for Information Security & Data Privacy! Curated by Sherpa Intelligence: Your Guide Up a Mountain of Information! sherpaintelligence.substack.com/p/apres-clim...
Après-climb: the Security + Privacy Weekend Magazine for May 30-31, 2026 🏔️ Your weekend magazine for #InformationSecurity & #DataPrivacy! open.substack.com/pub/sherpain...
Read 5 #InfoSec + #DataPrivacy news items from this past week you may have missed 🏔️ Five for Friday: May 29, 2026 sherpaintelligence.substack.com/p/five-for-f...
Read 5 #InfoSec + #DataPrivacy news items from this past week you may have missed 🏔️ Five for Friday: May 29, 2026 sherpaintelligence.substack.com/p/five-for-f...
From Aembit, "The Canvas Breach Shows What Happens When #SaaS Platforms Become Identity Infrastructure" go.aembit.io/s/the-canvas...
"WIM tells you what credentials exist and whether they’re compliant. WAM questions whether those credentials should exist at all – and when they must, ensures they’re short-lived and tightly scoped to the moment of actual use." go.aembit.io/s/5-capabili...