Daniel Krivelevich Profile
Daniel Krivelevich

@Dkrivelev

Followers
161
Following
56
Statuses
51

Entrepreneur, Investor, Advisor | ๐Ÿ‡ฎ๐Ÿ‡ฑ | Co-Founder & CTO @ Cider Security

Joined September 2013
Don't wanna be here? Send us removal request.
@Dkrivelev
Daniel Krivelevich
12 hours
- Term Shit - ื”ืกืจื˜ ื”ืžืœื
0
0
2
@Dkrivelev
Daniel Krivelevich
14 hours
ื”ืคืจื•ื™ืงื˜ ื”ื—ื“ืฉ ืฉืœ @YoavVilner ื•ืฉืœื™ ืื—ืจื™ ืฉื ื™ื ืฉื‘ื”ืŸ ืกื™ืคืจื ื• ื‘ื“ื™ื—ื•ืช ืฉืœ ื’ื™ืงื™ื ื‘ืžื—ืชืจืช, ื”ื—ืœื˜ื ื• ืœืฆืืช ืขื ื–ื” ื”ื—ื•ืฆื”..
@geektimecoil
Geektime - ื’ื™ืงื˜ื™ื™ื
15 hours
ื™ื–ืžื™ื ื™ืฉืจืืœื™ื™ื ื‘ื“ืงื• ื›ืžื” ืžืฉื—ืงื™ ืžื™ืœื™ื ืขืœ ื”ื™ื™ื˜ืง ื•ื˜ื›ื ื•ืœื•ื’ื™ื” ืืคืฉืจ ืœื“ื—ื•ืก ืœืกืจื˜ื•ืŸ ืื—ื“
0
2
7
@Dkrivelev
Daniel Krivelevich
14 hours
RT @geektimecoil: ื™ื–ืžื™ื ื™ืฉืจืืœื™ื™ื ื‘ื“ืงื• ื›ืžื” ืžืฉื—ืงื™ ืžื™ืœื™ื ืขืœ ื”ื™ื™ื˜ืง ื•ื˜ื›ื ื•ืœื•ื’ื™ื” ืืคืฉืจ ืœื“ื—ื•ืก ืœืกืจื˜ื•ืŸ ืื—ื“
0
2
0
@Dkrivelev
Daniel Krivelevich
15 hours
0
0
1
@Dkrivelev
Daniel Krivelevich
2 years
RT @EBGera: 1/13 ื›ืฉืื ื—ื ื• ื ืื‘ืงื™ื ืขืœ ื”ื–ืžื ืช ืจื›ื‘ ื—ื“ืฉ ืื• ืคืœื™ื™ืกื˜ื™ื™ืฉืŸ, ื”ืชื™ืจื•ืฅ ืขืœ ืดื‘ืขื™ื•ืช ื‘ืฉืจืฉืจืช ื”ืืกืคืงื”ืด ื ื–ืจืง ืœืื•ื™ืจ. ื™ื–ื ืกื™ื™ื‘ืจ ืฉืžืข ืืช ื”ืชื™ืจื•ืฅ ื•ืจืฅ ืœื”ืงโ€ฆ
0
9
0
@Dkrivelev
Daniel Krivelevich
2 years
RT @omer_gil: New research: How we abused repository webhooks to access internal CI systems at scale. 1/
0
149
0
@Dkrivelev
Daniel Krivelevich
2 years
RT @omer_gil: Playing with some PPE attack vectors in my CI/CD env ๐Ÿ‘€
0
2
0
@Dkrivelev
Daniel Krivelevich
2 years
RT @clintgibler: โš ๏ธ GitHub Org Identity Management Risks When not using SSO * User personal emails could be compromised * IdP removal doesโ€ฆ
0
6
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @clintgibler: ๐Ÿ›ก๏ธ CI/CD Credential Hygiene @TupleType examines 3 common issues: 1. Unrotated static credentials 2. Overly accessible crโ€ฆ
0
10
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @antitree: This doesn't push my agenda of hating on Jankins but it's a good in-depth analysis of a few CI tools and how they handle credโ€ฆ
0
8
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @omer_gil: Great blog post by @TupleType about credential hygiene risks in engineering environments, with comparison of the different seโ€ฆ
0
1
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @owasp: . @Owasp_DevSlop is going live tomorrow with Omer Gil & Daniel Krivelevich from @cider_sec to discuss the "Top 10 CI/CD Securityโ€ฆ
0
6
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @rung: I re-read CI/CD top10, I would like to introduce their new term. It's the PBAC(Pipeline-Based Access Controls). Source code managโ€ฆ
0
8
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @secarchpodcast: We are airing our eighth and final Episode in Season 3, this season is dedicated to #applicationsecurity, our guest forโ€ฆ
0
2
0
@Dkrivelev
Daniel Krivelevich
3 years
Looking forward to some fruitful followup collaborations with the industry on this #Top10CICD
0
0
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @clintgibler: ๐Ÿ—ก๏ธ Exploiting Jenkins build authorization Jenkins default settings assign every build to โ€œrun as SYSTEM" ๐Ÿ˜ฑ To harden, usโ€ฆ
0
11
0
@Dkrivelev
Daniel Krivelevich
3 years
RT @TupleType: Exploiting Jenkins build authorization. A default configuration we often see unchanged in production environments causes allโ€ฆ
0
4
0