# Unmasking Security: Seeing Through the Eyes of an Attacker with Saskia Coplans

**URL:** https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742
**Category:** Archive
**Tags:** security, testbash-netherlands
**Created:** [16 October 2020 06:30 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742 "2020-10-16T06:30:05Z")
**Posts on this page:** 8
**Page:** 1

<div class="post-metadata">

### Author: ![heather\_reid](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/heather_reid/32/29_2.png) [@heather\_reid](https://club.ministryoftesting.com/u/heather_reid)
#### Post date: [16 October 2020 06:30 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/1 "2020-10-16T06:30:05Z")

</div>

Sixth to the TestBash Netherlands stage is @saskia talking about how security can be integrated into all parts of an organisations culture by thinking through the eyes of the attacker.

If you’ve got questions for Saskia about the talk, add them here 👇

Remember to ❤ questions that you like to show appreciation for others.

Access the Q&A Session at 1:30 PM here:  
[https://app.hopin.to/events/testbash-netherlands-online-2020-16-october/sessions/e1319010-a13f-42fb-a4da-5d5a9ab06850](https://app.hopin.to/events/testbash-netherlands-online-2020-16-october/sessions/e1319010-a13f-42fb-a4da-5d5a9ab06850)

---

<div class="post-metadata">

### Author: ![heather\_reid](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/heather_reid/32/29_2.png) [@heather\_reid](https://club.ministryoftesting.com/u/heather_reid)
#### Post date: [16 October 2020 10:36 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/2 "2020-10-16T10:36:40Z")

</div>

What tool did you use for your slides? Tell me you didn’t manage that magic in powerpoint? 😅

---

<div class="post-metadata">

### Author: ![heather\_reid](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/heather_reid/32/29_2.png) [@heather\_reid](https://club.ministryoftesting.com/u/heather_reid)
#### Post date: [16 October 2020 10:55 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/3 "2020-10-16T10:55:37Z")

</div>

Often times, to get buy in from stakeholders about fixing security issues, you have to research similar products who’ve had breaches. Where are some good places to research this?

---

<div class="post-metadata">

### Author: ![friendlytester](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/friendlytester/32/14436_2.png) [@friendlytester](https://club.ministryoftesting.com/u/friendlytester)
#### Post date: [16 October 2020 11:21 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/4 "2020-10-16T11:21:51Z")

</div>

I didn’t realise there was so much to learn from the matrix. What other themes have hidden security lessons?

---

<div class="post-metadata">

### Author: ![AdyStokes](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/adystokes/32/14440_2.png) [@AdyStokes](https://club.ministryoftesting.com/u/AdyStokes)
#### Post date: [16 October 2020 11:30 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/5 "2020-10-16T11:30:32Z")

</div>

Fantastic talk Saskia, thank you.  
Has any company flatly refused to do anything about a vulnerability you have found through your research at Digital Interruption?  
Would there ever be a situation where you wouldn’t flag a vulnerability you found?

---

<div class="post-metadata">

### Author: ![danielbilling](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/danielbilling/32/8976_2.png) [@danielbilling](https://club.ministryoftesting.com/u/danielbilling)
#### Post date: [16 October 2020 11:32 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/6 "2020-10-16T11:32:14Z")

</div>

Do you have any advice on developing a Security COI, or creating a group of ‘Security Champions’ in an organisation?

Happy to come on the video to chat

Also, would Saskia like to come on Screen Testing?

---

<div class="post-metadata">

### Author: ![heather\_reid](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/heather_reid/32/29_2.png) [@heather\_reid](https://club.ministryoftesting.com/u/heather_reid)
#### Post date: [16 October 2020 11:44 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/7 "2020-10-16T11:44:19Z")

</div>

The links shared in the chat by Saskia 😁

> **[Hacker-Powered Security Testing & Bug Bounty | HackerOne](https://www.hackerone.com)**
>
> Reduce the risk of a security incident by engaging with the world’s largest community of hackers. HackerOne offers bug bounty, VDP, and pentest solutions.https://www.hackerone.com/homecurrent-page

> **[\#1 Crowdsourced Cybersecurity Platform | Bugcrowd](https://www.bugcrowd.com)**
>
> With a powerful cybersecurity platform and team of security researchers, Bugcrowd connects organizations to a global crowd of trusted ethical hackers.

> **[CVE security vulnerability database. Security vulnerabilities, exploits,...](https://www.cvedetails.com)**

> **[Giggle; laughable security | Digital Interruption Research](https://research.digitalinterruption.com/2020/09/10/giggle-laughable-security/)**
>
> Preface: There is very little in this blog post that is interesting from a technical perspective. The discovered vulnerability is incredibly basic but fairly...

---

<div class="post-metadata">

### Author: ![mcgovernaine](https://sea2.discourse-cdn.com/flex020/user_avatar/club.ministryoftesting.com/mcgovernaine/32/8207_2.png) [@mcgovernaine](https://club.ministryoftesting.com/u/mcgovernaine)
#### Post date: [16 October 2020 13:16 UTC](https://club.ministryoftesting.com/t/unmasking-security-seeing-through-the-eyes-of-an-attacker-with-saskia-coplans/43742/8 "2020-10-16T13:16:14Z")

</div>

The presentation about netflix mentioned [https://www.slideshare.net/mobile/diannemarsh/the-paved-road-at-netflix](https://www.slideshare.net/mobile/diannemarsh/the-paved-road-at-netflix)

@danielbilling
