Skip to main content

Security tools and AI are a perfect match

· 6 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

It's an understatement to say there is a lot of hype around AI right now. It is being integrated into everything. The company I work for, Elastic, is part of the same wave with the Elasticsearch Relevance Engine (ESRE) and the Elastic AI Assistant. I'm usually skeptical of overhyped technology, but I have to admit AI is making genuine, lasting waves.

So a natural question for me is: would AI integration be useful to the users of Secutils.dev? Let's explore that with a small proof-of-concept I built this week.

Time management, subtraction as a life motto

· 4 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

Today, I want to talk about time management, but don't worry, I'm not going to give you another lecture on task prioritization or the importance of a good sleep schedule (although those are important too!). You've probably come across numerous articles covering those topics already, some helpful and others not so much. Instead, I want to share my personal experience and focus on a key aspect that has greatly influenced how I make the most of my time: subtraction. Subtraction, in this context, refers to the removing things, commitments, and plans that don't clearly align with my goals and overall happiness.

Exploring third-party services with webhooks

· 8 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

Today, I want to show how the Webhooks feature of Secutils.dev can be used to explore third-party services from the outside, what a security researcher would call basic active reconnaissance. Reconnaissance is just a fancy word for gathering information about a target system to understand exploitable vulnerabilities and attack vectors. In this post our intent is innocent: we want to learn how a particular service implements a feature we like. The technique, however, is the same one a researcher would use.

Why I started writing regularly

· 5 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

Until this year, I had never published a blog post on the internet. However, in the past month, I have published 10 of them and shared them on LinkedIn, Twitter, and Mastodon, the only three social/professional networks I use. This is not my usual approach, and you may wonder why I'm doing it. The reasons are multifaceted, so let me explain and hopefully encourage others like me to start writing as well.

Q2 2023 update - Web resources tracker

· 5 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

As the end of "Q2 2023 - Apr-Jun" milestone (that's how I structure my roadmap) is quickly approaching, I wanted to give a quick update on the progress so far. One of the significant deliverables for this milestone is a functional web resources tracker utility. The utility should give developers the ability to track resources of any web page. You may be wondering why they would want to do that and how it relates to security. Let me explain using two personas: the developer and the security researcher.

Personal finances and indie-project budget

· 4 min read
Aleh Zasypkin
Creator of Secutils.dev

Hello!

Just a short update this time, as I was busy preparing my tax return and rebalancing my personal portfolio last week. Ensuring that your personal finances are in good shape is a critical skill, especially when you don't have VC funding 😅 But seriously, I believe this topic is worth highlighting.