{"@attributes":{"version":"2.0"},"channel":{"title":"shellsharks Captain Logs","description":"Writings on infosec, technology and life","link":"https:\/\/shellsharks.com","language":"en-us","managingEditor":"mike@shellsharks.com (Shellsharks)","webMaster":"mike@shellsharks.com (Shellsharks)","pubDate":"Sun, 19 Apr 2026 17:11:32 -0400","lastBuildDate":"Sun, 19 Apr 2026 17:11:32 -0400","image":{"title":"shellsharks Captain Logs","url":"https:\/\/shellsharks.com\/assets\/img\/avatar.png","link":"https:\/\/shellsharks.com"},"generator":"Jekyll v4.3.4","item":[{"title":"Captain's Log, Entry: March 30, 2026","author":"mike@shellsharks.com (Mike)","description":"<p>Spring has sprung, and with it a new garden \ud83c\udf31 \u2014 the <a href=\"https:\/\/vulnerability.garden\">Vulnerability Garden<\/a> \ud83e\udeb4! That\u2019s been a big focus of mine the last week or so (and is still under development for my <em>v1.0<\/em> release). I was in San Francisco earlier this month \u2708\ufe0f. Nothing else particularly noteworthy to highlight for March\u2026<\/p>\n\n<h5 id=\"site-news\">Site News<\/h5>\n\n<ul>\n  <li>Added a <code class=\"language-plaintext highlighter-rouge\">theme-color<\/code> meta tag, which makes the color scheme more consistent on mobile device header bars and gives that <em>pop<\/em> of color when pulling down the page on certain browsers (e.g. Safari).<\/li>\n  <li>Signed up to host <a href=\"https:\/\/indieweb.org\/IndieWeb_Carnival\">IndieWeb Carnival<\/a> for <strong>April 2027<\/strong>. Stay tuned for that (need to come up with a prompt \ud83e\udd14).<\/li>\n  <li>I\u2019ve welcomed <a href=\"https:\/\/vulnerability.garden\">Vulnerability.Garden<\/a> \ud83e\udeb4 to the <span class=\"shellsharks-com\">shellsharks<\/span> family!<\/li>\n  <li>I now have a <a href=\"https:\/\/shellsharks.com\/.well-known\/human.json\">human.json<\/a> file published.<\/li>\n<\/ul>\n\n<h5 id=\"tv\">TV<\/h5>\n\n<ul>\n  <li><b>Knight of the <s>Seven<\/s> Nine Kingdoms<\/b>: Season one was great! Only complaint is that it was too short \ud83d\ude22<\/li>\n  <li><strong>Task<\/strong>: Kinda stopped watching this one\u2026<\/li>\n  <li><strong>Scrubs<\/strong>: It\u2019s damn near pulling off the impossible\u2014recapturing the humor and vibes of the original Scrubs seasons. Genuinely enjoying it.<\/li>\n  <li><strong>NBA<\/strong>: The Lakers are on a roll. Still can\u2019t believe the Mavs gave up Luka \ud83d\ude02<\/li>\n  <li><strong>Paradise<\/strong>: Season two has still got it!<\/li>\n  <li><strong>One Battle After Another<\/strong>: This movie was <em>ok<\/em>. I probably would never watch it again. It wasn\u2019t <em>confusing<\/em>\u2026 but I did just have this vague sense of like.. <em>what is going on<\/em>, hanging over me throughout the entire flick.<\/li>\n  <li><strong>Frankenstein<\/strong> (2025): There were parts of this movie I really enjoyed, other parts didn\u2019t quite land. It does make me wonder about how exactly, from a physiological perspective, Frankenstein is so strong and impossible to kill.<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n\n<ul>\n  <li>\ud83d\udc68\u200d\ud83c\udf3e Spring! Soon (April) I\u2019ll be executing on my (garden) <a href=\"https:\/\/shellsharks.com\/garden-plan-2026\">plan<\/a>.<\/li>\n  <li>\u2764\ufe0f\u200d\ud83d\udd25 Finally got my feelings about <a href=\"https:\/\/shellsharks.com\/burnout\">burnout<\/a> off my chest &amp; heart.<\/li>\n  <li>\ud83c\udf81 My birthday came and went. It was fun! I went out antiquing (in a way) with my son (we bought a gigantic bird house), and then got hibachi (per usual) that night. Hibachi is the best. \ud83e\udd24<\/li>\n  <li>\u2600\ufe0f Porch weather is back! Porch weather is the best! Though this will be the first spring (a.k.a. pollen blasting season) my porch will be subjected to, so I need to figure out what I\u2019m going to do in that regard\u2026<\/li>\n  <li>\ud83c\udf09 Was out in San Francisco for work early in the month, so of course I went to <a href=\"https:\/\/www.yelp.com\/biz\/mamas-on-washington-square-san-francisco\">Mamas<\/a> (<em>twice<\/em>)!<\/li>\n<\/ul>\n\n<hr \/>\n\n<h5 id=\"thoughtstream\">Thoughtstream<\/h5>\n<p><em>Just a stream of random thoughts\u2026<\/em><\/p>\n\n<h6 id=\"paperclip\">Paperclip<\/h6>\n\n<p>I came across <a href=\"https:\/\/paperclip.ing\">Paperclip<\/a> on my feeds at some point and just\u2026 <em>what?<\/em> I\u2019d love to see a writeup of someone earnestly using this and see what happened. AI has gotten <em>out of control<\/em>.<\/p>\n\n<h6 id=\"afraid-of-ai\">Afraid of AI<\/h6>\n\n<p>Rick\u2019s piece titled \u201c<a href=\"https:\/\/www.richardosgood.com\/posts\/am-i-afraid-of-ai\/\">Am I Afraid of AI?<\/a>\u201d is a near-perfect encapsulation of my own feelings. Go read it and save me the hassle of writing up the same thing.<\/p>\n\n<h6 id=\"bluesky-ceo-transition\">Bluesky CEO transition<\/h6>\n\n<p><a href=\"https:\/\/bsky.social\/about\/blog\/03-09-2026-a-new-chapter-for-bluesky\">Jay<\/a> is out as CEO of Bluesky and <a href=\"https:\/\/toni.org\/2026\/03\/13\/impressions-from-my-first-week-at-bluesky\/\">Toni<\/a> has stepped in. <em>Woo<\/em>. I\u2019m kinda over talking about, criticizing, poking holes, or otherwise debating Bluesky-related things. Bsky is gon\u2019 bsky y\u2019know? I have my doubts about the networks long-term viability (and <a href=\"https:\/\/mastodon.social\/@fromjason\/116206111765486501\">other things<\/a>) but <em>whatever<\/em>. If people like being there then that\u2019s great! If it lasts for years and years and finds meaningful success along the way then that\u2019s awesome. If it crashes and burns and people have to \u201cflee\u201d elsewhere then we will deal with that then too. I\u2019m focusing on more positive writing pursuits these days. \ud83d\udcd6 *<em>closes book<\/em>* \ud83d\udcd8 \ud83d\ude01<\/p>\n","pubDate":"Mon, 30 Mar 2026 10:04:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2026\/03\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2026\/03\/30\/log"},{"title":"Captain's Log, Entry: February 26, 2026","author":"mike@shellsharks.com (Mike)","description":"<p>It\u2019s been a busy month on the blog! So what\u2019s goin\u2019 on\u2026 I\u2019ve added a bunch of new pages to the site, and have been publishing a variety of notes and posts. I\u2019ve mused on how to get myself academically\/professionally motivated once more and also appended a new <em>thoughtstream<\/em> section to the bottom of this here journal\u2014a place for me to do mini-writeups\/commentary on things that I don\u2019t want in an isolated note\/post\/etc\u2026 <em>Le\u2019s go<\/em>!<\/p>\n\n<h5 id=\"site-news\">Site News<\/h5>\n\n<ul>\n  <li>I\u2019ve made some big tweaks to my <a href=\"https:\/\/shellsharks.com\/blogroll\">blogroll<\/a>. It now features a lot more blogs\/sites I really enjoy. I\u2019ve added a <em>.opml<\/em> but not sure the best way to keep it reliably up to date as I add more sites to the list. I am also considering adding some descriptions for each entry.<\/li>\n  <li>I recently went through my archive of <a href=\"https:\/\/shellsharks.com\/scrolls\">Scrolls<\/a>, clicking through each link to find long-lost interesting blogs to add to my <a href=\"https:\/\/shellsharks.com\/blogroll\">blogroll<\/a>. In doing so, I discovered that there were <em>a lot<\/em> of dead links sprinkled throughout. There were fedi posts that had disappeared, blogs that had moved, and who knows what else. Just the nature of the web I guess!<\/li>\n  <li>My experimental <a href=\"https:\/\/shellsharks.com\/notes\/2025\/01\/10\/gotosocial-on-knt-host\">GtS fedi instance<\/a> is dead. Long live <a href=\"https:\/\/shellsharks.com\/notes\/2025\/01\/10\/ous-computer\">malici.ous.computer<\/a>! Like a dumb-dumb I didn\u2019t grab my archive in time before K&amp;T Host went dark, so here I am. Not sure if I will attempt to revive it elsewhere. Time will tell. Until then, I\u2019ve removed the redirect on <a href=\"https:\/\/shellsharks.social\/@afterdark\">@afterdark@shellsharks.social<\/a> and will be using that account once more. <a href=\"https:\/\/shellsharks.com\/notes\/2024\/02\/27\/shark-after-dark\">\ud83c\udf19<\/a><\/li>\n  <li>Inspired by <a href=\"https:\/\/marijkeluttekes.dev\/mentions\/\">Marijke<\/a>, I now have a <a href=\"https:\/\/shellsharks.com\/mentions\">mentions<\/a> page which lists all of the instances (atleast that I\u2019ve found) of people mentioning me or my site on their own blog! I think I\u2019ll limit this to just mentions on blogs, and not those on social media.<\/li>\n  <li>I\u2019ve published a bunch of new <a href=\"https:\/\/shellsharks.com\/slashes\">slash pages<\/a>\u2014<a href=\"https:\/\/shellsharks.com\/ai\">\/ai<\/a>, <a href=\"https:\/\/shellsharks.com\/blank\">\/blank<\/a>, <a href=\"https:\/\/shellsharks.com\/hello\">\/hello<\/a>, <a href=\"https:\/\/shellsharks.com\/nope\">\/nope<\/a>, <a href=\"https:\/\/shellsharks.com\/self-hosted\">\/self-hosted<\/a>, <a href=\"https:\/\/shellsharks.com\/top4\">\/top4<\/a> and <a href=\"https:\/\/shellsharks.com\/verify\">\/verify<\/a>.<\/li>\n  <li>I got the idea from <a href=\"https:\/\/burgeonlab.com\/weeknotes\/2026\/w08\/#tasks-log\">Burgeon Lab<\/a> to publish an <a href=\"https:\/\/indieweb.org\/User:Shellsharks.com\">Indieweb.org profile page<\/a>.<\/li>\n  <li>Reorganized my hamburger menu items. \ud83c\udf54<\/li>\n  <li>I\u2019ve (<em>finally<\/em>) made some significant styling tweaks to the site. I\u2019ve moved from colored links to underlined links for both the light and dark themes (keeping the \u2018classic\u2019 theme the same for the most part). Hopefully this improves legibility\/accessibility and gives it a slightly more <u>pro<\/u> look.<\/li>\n  <li>Upon request, I\u2019ve made <em>visited<\/em> links in <a href=\"https:\/\/shellsharks.com\/scrolls\" class=\"shellsharks\">Scrolls<\/a> have specialized styling. So folks can keep track of what links they\u2019ve already visited. I\u2019ve kept it to just Scrolls for now to reduce visual clutter elsewhere on the site.<\/li>\n  <li>I\u2019ve changed up my welcome message at the top of the home page. For posterity, it now says\u2026<\/li>\n<\/ul>\n\n<blockquote>\n  <p>Greetings web traveler! My name is Mike. I am a security researcher and Internet homesteader (among many other things). Welcome to my digital garden <i class=\"ph ph-plant shellsharks-com\"><\/i> \u2014 a florilegium of personal works across all things infosec, technology and life. This site also serves as the canonical identity (a veritable root system) for myself on the web. There\u2019s a lot to discover here, so sit a spell, take some time to really dig around and explore. Wanna contact me? Don\u2019t be shy now either! C\u2019mon and say hi anytime.<\/p>\n<\/blockquote>\n\n<h5 id=\"tv\">TV<\/h5>\n\n<ul>\n  <li>Finished the Stranger Things binge. I had heard a sprinkling of folks saying they didn\u2019t like how it ended, but I thought the final season was great and the ending was a perfect way to wrap things up.<\/li>\n  <li>Knight of the Seven Kingdoms has been thoroughly enjoyable. Didn\u2019t see the Egg thing coming\u2026<\/li>\n  <li>The Lakers need to stay healthy, but otherwise have been pretty exciting to watch. Being a DC-area native, the Wizards have really <em>never<\/em> been exciting to watch. Even in the Wall\/Beal days they weren\u2019t <em>that<\/em> compelling. But with the way the East looks + them adding AD &amp; Trae Young, who knows\u2026 maybe I could get into watching Wizards ball too?<\/li>\n  <li>I\u2019ve been rewatching a bunch of the X-Men movies on Disney+. Just for fun. They\u2019re all <em>OK<\/em>.<\/li>\n  <li>I\u2019ve also started watching Paradise (season 2) and Task.<\/li>\n<\/ul>\n\n<h5 id=\"self-hosting\">Self-Hosting<\/h5>\n\n<p>I have a lot of things I want to self-host. Right now my Masto instance is run by MastoHost and that\u2019s fine, but I want to get malici.ous.computer (my GtS instance) back up and running, I need a new bookmarks manager (since Pocket died), I want to self-host my RSS (and get off Feedly), and I\u2019d like to put some Discord replacement up (who knows, something like Discourse or maybe even Matrix). There\u2019s probably other stuff I want to self-host too. I\u2019m taking a look at Hetzner and Yunohost. I\u2019ve started documening this <a href=\"https:\/\/shellsharks.com\/notes\/2026\/02\/20\/setting-off-on-a-self-hosting-journey\">journey<\/a>, and will add things to my <a href=\"https:\/\/shellsharks.com\/self-hosted\">\/self-hosted<\/a> slash page as they materialize.<\/p>\n\n<h5 id=\"career\">Career<\/h5>\n\n<p>From ~2016-2022 I was <a href=\"https:\/\/shellsharks.com\/training-retrospective\">incredibly prolific<\/a> with respect to learning, doing infosec trainings and getting certifications. In the time since, that\u2019s really fallen off a cliff. I haven\u2019t gotten a cert in forever (<em>for <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/14\/stop-worrying-about-certification-paths\">whatever that\u2019s worth<\/a><\/em>), I\u2019ve tried and failed to get much traction on doing any kind of training (just go peruse my journal for all the times I\u2019ve mentioned working on OSWE, eg. <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/08\/01\/log#what-im-learning\">8\/21<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/12\/30\/log#what-im-learning\">12\/21<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2022\/04\/28\/log#what-im-learning\">4\/22<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2022\/06\/29\/log#what-im-learning\">6\/22<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2022\/12\/30\/log#what-im-learning\">12\/22<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/01\/28\/log#what-im-learning\">1\/23<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/02\/28\/log\">2\/23<\/a>, <a href=\"https:\/\/shellsharks.com\/captains-log\/2025\/01\/03\/log#look-ahead-to-2025\">1\/25<\/a>), and I can\u2019t say I\u2019ve really added anything particularly significant to my knowledge base in that span either. <em>Sure<\/em>, I\u2019ve been busy with kids, and the house, and w\/e else, but I have to call it like it is\u2014I\u2019ve been <u>stuck<\/u>.<\/p>\n\n<p><a href=\"https:\/\/mastodon.social\/@TheTostitostelli\/116086947560190694\"><img src=\"https:\/\/shellsharks-images.s3.us-east-1.amazonaws.com\/captains-log\/2026\/horsing-around.webp\" alt=\"Stop Horsing Around\" width=\"300px\" \/><\/a><\/p>\n\n<p>So how do I get momentum again? I don\u2019t know what will <em>actually<\/em> work. I don\u2019t know if writing this up and publishing it here will serve as any spark. But I\u2019m going to do a bit of ideation\/brainstorming on how I can kickstart my learning and advancement right here (in no particular order).<\/p>\n\n<ul>\n  <li>I have a pro subscription to <a href=\"https:\/\/pentesterlab.com\">PentesterLab<\/a>. This platform came highly recommended from some coworkers and has a lot of practical exercises targeting real-world CVEs and other commonly found web vulnerabilities. I just need to make time to work through the challenges and write up the solutions (responsibly of course).<\/li>\n  <li>I\u2019ve been toying with the idea of producing a <em>~weekly<\/em> \u201cwhat-have-I-learned\/read\u201d stream or post that would contain links and mini-writeups related to all the things I learned and did in that period. Maybe said stream could live in this here journal, or maybe I\u2019ll create a new <a href=\"https:\/\/shellsharks.com\/multiplicity-of-writing\">content type<\/a>, or perhaps it can go in <a href=\"https:\/\/shellsharks.com\/scrolls\" class=\"shellsharks\">Scrolls<\/a>\u2014<strong>tbd<\/strong>! (Maybe I could do something with the <a href=\"https:\/\/slashpages.net#til\">\/TIL<\/a> slash page idea?)<\/li>\n  <li>I\u2019ve said it before, and now I\u2019m saying it again\u2014maybe I\u2019ll try for one of those <a href=\"https:\/\/www.offsec.com\">OffSec<\/a> certs \ud83d\ude05. I\u2019m particularly interested in <a href=\"https:\/\/www.offsec.com\/courses\/web-300\/\">OSWE<\/a> (<em>sound familiar<\/em>?) or the upcoming <a href=\"https:\/\/www.offsec.com\/courses\/osai\/\">OSAI<\/a> training.<\/li>\n  <li>Learning topics of emphasis for me this year (<em>vague but w\/e)<\/em> include <em>AI<\/em> (<em>securing\/pwning these systems to be clear<\/em>), <em>Cloud<\/em>, <em>Cryptography<\/em>, <em>Code Review<\/em> and <em>Web App Pentesting<\/em>.<\/li>\n  <li>Generally I\u2019d like to do more reading! I save <em>a lot<\/em> of articles, and have a lot of <a href=\"https:\/\/shellsharks.com\/cybersecurity-library\">books on my shelf<\/a>. I\u2019d like to read more of this stuff and write about it where possible.<\/li>\n  <li><em>Finally<\/em>, I need to do more writing about what I\u2019m doing at work. This can help juice the work, cement knowledge in my mind and put more lovely content on the site!<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n\n<ul>\n  <li>Trying to make time for and build a long streak of going to the gym is always tough. But I <em>do<\/em> feel like I\u2019m making slow and steady progress. Biggest issue right now is this nagging right shoulder soreness.<\/li>\n  <li>I\u2019ll be heading to San Francisco in March! Always good to make my way out there and make my usual pilgrimage to <a href=\"https:\/\/californiathroughmylens.com\/mamas-breakfast-san-francisco\/\">Mama\u2019s<\/a>.<\/li>\n  <li>I\u2019ve been thinking about trying to get out of my house to work a little more often. That change of scenery seems like it would help my focus.<\/li>\n  <li>I\u2019m thinking this <em><a href=\"https:\/\/wtop.com\/local\/2026\/02\/what-the-dc-region-is-doing-with-the-snowcrete-its-hauling-off-the-streets\/\">snowcrete<\/a><\/em> will be here until May. <em>Insane<\/em>.<\/li>\n  <li>I took some time away from this site but now that I\u2019m back I really want to put more effort into journaling. I went back and read through the archive of <a href=\"https:\/\/shellsharks.com\/captains-log\">captains logs<\/a> and really enjoyed time traveling through things I was thinking about and doing in months and years past.<\/li>\n  <li>I\u2019ve started <a href=\"https:\/\/shellsharks.com\/garden-plan-2026\">planning out my garden<\/a> for 2026.<\/li>\n<\/ul>\n\n<hr \/>\n\n<h5 id=\"thoughtstream\">Thoughtstream<\/h5>\n<p><em>Just a stream of random thoughts\u2026<\/em><\/p>\n\n<h6 id=\"resonant-computing\">Resonant Computing<\/h6>\n\n<p>I recently came across this \u201c<a href=\"https:\/\/resonantcomputing.org\/\">Resonant Computing Manifesto<\/a>\u201d, cosigned by famed Bluesky apologist and Techdirt founder Mike Masnick. Before I talk about \u201cResonant Computing\u201d in isolation, let me start with <a href=\"https:\/\/www.techdirt.com\/2026\/01\/27\/atproto-the-enshittification-killswitch-that-enables-resonant-computing\/\">Mike\u2019s take on how ATproto enables Resonant Computing<\/a>. In this piece, he waxes poetic about how ATproto (and thus Bluesky) fulfills\/enables the 5 core principles of Resonant Computing. He also goes on in the comments of the post claiming that ActivityPub\/the Fediverse enable at best, only the <strong>Plural<\/strong> tenant of Resonant Computing.<\/p>\n\n<blockquote>\n  <p>\u2026but I don\u2019t think ActivityPub meets the criteria I\u2019m talking about in the post. The only thing AP currently does is allow you to move and keep your social graph. The other features I discuss aren\u2019t really possible with AP right now. That may change, and I hope it does. But, like already with ActivityPub I have an account on Mastodon, but I couldn\u2019t use that same account or data from it on Lemmy. I had to create a separate account.<\/p>\n<\/blockquote>\n\n<p><em>Yeah ok, Mike<\/em>\u2026<\/p>\n\n<p>I\u2019ll go principle by principle here and be quite frank about how this don\u2019t smell right\u2026<\/p>\n\n<ol>\n  <li>\n    <p><strong>Private<\/strong>: ATproto is very famously <em>not private<\/em> in terms of what is visible to everyone. Mike explains however that he was against this specific term being used as the Resonant Computing Manifesto\u2019s understanding of \u201cPrivate\u201d means that users own their data and determine how it is used. Well yes we know theoretically ATproto\u2019s PDS concept enables this level of data ownership, and that\u2019s great! So I\u2019ll give ATproto a point here, but have to agree with Mike that it\u2019s not the right word from the manifesto itself.<\/p>\n  <\/li>\n  <li>\n    <p><strong>Dedicated<\/strong>: \u201c\u2026You have to trust that there are no hidden agendas or conflicting interests.\u201d <em>omg<\/em> really? With ATproto? The protocol behind Bluesky? The same organization with Muskian roots? The one that took VC cash from some blockchain firm? The same one that allows open Fascists to run rampant? Yeah sure\u2026 lots of trust there.<\/p>\n  <\/li>\n  <li>\n    <p><strong>Plural<\/strong>: No single entity should control digital spaces. Bluesky is pretty monolithic. Maybe the tide has started to turn a bit, and I know we\u2019re trying to logically separate ATproto and Bluesky. But until there\u2019s any significant amount of users off the main Bsky node, I don\u2019t think ATproto can claim any success here.<\/p>\n  <\/li>\n  <li>\n    <p><strong>Adaptable<\/strong>: Software should be open ended. Well I think they\u2019re just trying to claim that ATproto is open source. <em>OK<\/em>. <em>Cool<\/em>? So is like, all of the Fediverse pretty much\u2026<\/p>\n  <\/li>\n  <li>\n    <p><strong>Prosocial<\/strong>: Technology should help us become better neighbors, collaborators, and stewards of shared spaces. Well in Blueskys\u2019 case, they certainly are collaborators (derogatory) aren\u2019t they?<\/p>\n  <\/li>\n<\/ol>\n\n<p>But don\u2019t take it from me, I\u2019m not the only one who this <a href=\"https:\/\/notebook.wesleyac.com\/resonant-computing\/\">Resonsant Computing doesn\u2019t make much sense<\/a>.<\/p>\n\n<h6 id=\"18-lessons-from-18-years-of-blogging\">18 lessons from 18 years of blogging<\/h6>\n\n<p>Some commentary on <a href=\"https:\/\/goodinternetmagazine.com\/18-lessons-from-18-years-of-blogging\/\">Ben\u2019s 18 lessons from 18 years of blogging<\/a>. I thought this was a great article and most of the points I think are really spot on. There were a few though that I disagreed with\u2026<\/p>\n\n<p>2. <strong>Write about what you\u2019re passionate about<\/strong>: Yes of course. But y\u2019know, why limit yourself? I think you should just write about <em>everything<\/em>. I mean, <em>start<\/em> with your passions, but I think it\u2019s fun, and a good way to expose yourself to other things, to write about other things, not just your \u201cpassions\u201d.<\/p>\n\n<p>6. <strong>Hand writing drafts on paper can help the creative process<\/strong>: I\u2019ve never done this, so maybe I shouldn\u2019t comment on it. Don\u2019t knock it \u2018til you\u2019ve tried it, and all that. But physically hand writing a lot of text is pretty exhausting in my opinion.<\/p>\n\n<p>11. <strong>Resist the urge to go back and edit old posts<\/strong>: This is the one I feel the strongest about. This is bad advice (in my humble opinion). This is your site. Your voice. Your site is a place for you. If you want to edit a post to be more accurate, or to add more context, or because you\u2019ve learned something new, or changed your mind. You <em>absolutely<\/em> should. It\u2019s your site, do what you want with it.<\/p>\n","pubDate":"Thu, 26 Feb 2026 09:48:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2026\/02\/26\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2026\/02\/26\/log"},{"title":"Captain's Log, Entry: January 30, 2026","author":"mike@shellsharks.com (Mike)","description":"<p><em>Phew<\/em>! It\u2019s been a minute since I\u2019ve published one of these journal entries. <em>Yep<\/em>, I\u2019m still alive. Just <a href=\"https:\/\/shellsharks.com\/notes\/2025\/06\/23\/its-a-lot-of-things\">busy<\/a>, sometimes unmotivated, and have just generally been <em>elsewhere<\/em> for a few months now. But I\u2019ve been easing myself back into some of my old grooves and that includes my blogging and IndieWeb-related habits.<\/p>\n\n<h5 id=\"site-news\">Site News<\/h5>\n<ul>\n  <li><em>Let\u2019s see<\/em>, in the new year I\u2019ve been making some steady <a href=\"https:\/\/shellsharks.com\/changelog\">changes<\/a> to the site, got <a href=\"https:\/\/shellsharks.com\/scrolls\">Scrolls<\/a> goin\u2019 again and even put out a post or two. <em>I\u2019m back!<\/em><\/li>\n  <li>My <a href=\"https:\/\/shellsharks.com\/notes\/2025\/01\/10\/gotosocial-on-knt-host\">GoToSocial<\/a> instance\u2019s hosting provider has gone <a href=\"https:\/\/www.knthost.com\/blog\/shutting-down\">kaput<\/a>. So I need to download my archive and <a href=\"https:\/\/www.knthost.com\/blog\/hosting-migration-options\">migrate<\/a> somewhere. Have been really slacking on that though.<\/li>\n<\/ul>\n\n<h5 id=\"tv\">TV<\/h5>\n\n<ul>\n  <li>Binging the entirety of <a href=\"https:\/\/www.imdb.com\/title\/tt4574334\/\">Stranger Things<\/a> (Now finally in the last season)<\/li>\n  <li>Watching NBA<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n\n<p>\ud83d\udc76 \ud83c\udfe1 <strong>Kids<\/strong>. Kids make you busy. I\u2019m <em>super<\/em> busy with the kids. <em>Oh<\/em> and having a house is work\u2026. and money\u2026 and time\u2026 and more work. I don\u2019t mean to complain. I\u2019m lucky to have what I have, especially looking at the way the world is these days. It\u2019s just me saying I\u2019m <em>busy<\/em>. Did I mention the house costs me tons of time and money? We got plumbing <em>surprises<\/em>, the fridge is on the fritz, then the HVAC goes <em>brrrr<\/em>, the yard is a swamp, the windows leak air, and the list just <em>goooooesssss<\/em>. But hey! That\u2019s life.<\/p>\n\n<p>\u2744\ufe0f I\u2019m sure I can speak for everyone in the DMV area atleast. I\u2019m ready for the warm weather. We\u2019re nearly a week after the \u201c<a href=\"https:\/\/www.axios.com\/local\/washington-dc\/2026\/01\/28\/snow-emergency-extended-as-snowcrete-slows-dc-cleanup\">Snowcrete<\/a>\u201d event and I\u2019m just dreaming about being out in the yard, doing some <a href=\"https:\/\/shellsharks.com\/tomatosharks\">gardening<\/a>, napping on the screened porch, enjoying the fireflies\u2026 <em>ahhh<\/em>\u2026<\/p>\n\n<p>\ud83e\uddd9\u200d\u2642\ufe0f I need to sign up for <a href=\"https:\/\/pentesterlab.com\">PentesterLab<\/a> and get back on my training\/learning grind. It feels like it\u2019s been forever (<em>and it has<\/em>).<\/p>\n","pubDate":"Fri, 30 Jan 2026 11:32:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2026\/01\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2026\/01\/30\/log"},{"title":"Captain's Log, Entry: April 30, 2025","author":"mike@shellsharks.com (Mike)","description":"<p>April came and went it seems, but I\u2019ve been up to a lot! Notably, I\u2019ve got a lot interesting TV I\u2019m watching these days, and my trip to NYC was a blast!<\/p>\n\n<hr class=\"fin\" \/>\n\n<h5 id=\"site-news\">Site News<\/h5>\n\n<ul>\n  <li>\n    <p>In April I\u2019ve published <strong>6<\/strong> <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>, <strong>11<\/strong> blog <a href=\"https:\/\/shellsharks.com\/blogs\">posts<\/a>, <strong>0<\/strong> <a href=\"https:\/\/shellsharks.com\/devlog\">devlogs<\/a>, <strong>4<\/strong> <a href=\"https:\/\/shellsharks.com\/scrolls\">scrolls<\/a>, <strong>1<\/strong> <a href=\"https:\/\/shellsharks.com\/captains-log\">captain\u2019s log<\/a> and shared <strong>4<\/strong> <a href=\"https:\/\/shellsharks.com\/linklog\">links<\/a> on my site. That\u2019s quite a few blog posts if you ask me.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/shellsharks.com\/scrolls\/scroll\/2025-04-28\">Scroll 13<\/a> was late, but it got out none-the-less! The next edition should come at the normal time though. I really thought I\u2019d be able to get it out while I was traveling, but as it turned out, I was just too tired at the end of the day to put the heart and energy required into writing it up. That said, I had all the content already so I was able to put it together rather quickly once I got back home. I really expected someone to message me wondering where the issue was, but no one did \ud83d\ude05. But, people seemed excited enough once it finally did drop! \ud83e\udde1<\/p>\n  <\/li>\n  <li>\n    <p>The nerve of <a href=\"https:\/\/www.scam-detector.com\/validator\/shellsharks-com-review\/\">scam detector<\/a> to give my site a <strong>76.7<\/strong> scam score \ud83e\udd23<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"site-references\">Site References<\/h6>\n\n<p>My site has been referenced and shared a bunch this month! Here\u2019s some examples\u2026<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/social.kedara.nl\/notice\/Asuc4mKaVJp7guMHnE\">Ruben was feeling inspired<\/a> by my site and published <a href=\"https:\/\/kedara.eu\/blog\/2025\/04\/blog-questions-challenge\/\">his own take<\/a> on the <a href=\"https:\/\/shellsharks.com\/get-to-know-my-blog\">blog questions challenge<\/a><\/li>\n  <li>I made it on <a href=\"https:\/\/www.benji.dog\/linkroll\">benji.dog\u2019s blogroll<\/a>!<\/li>\n  <li><a href=\"https:\/\/mastodon.kurau.tokyo\/@kurau\/113985575705327641\">Someone likes<\/a> my horrifically neglected podcast!<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/scrolls\/scroll\/2025-04-04\">Scroll 10<\/a> got a <a href=\"https:\/\/floss.social\/@alcinnz\/114280651243993514\">shoutout from alcinnz<\/a><\/li>\n  <li><a href=\"https:\/\/rbfirehose.com\/2025\/04\/10\/shellsharks-extending-indieweb-txt-with-reference-information\/\">RB Firehose<\/a> thought <a href=\"https:\/\/shellsharks.com\/extending-indieweb-txt-reference\">this<\/a> was worth boosting<\/li>\n  <li><a href=\"https:\/\/lemmy.world\/post\/28086114\">Lemmy Fediverse community<\/a> shared <a href=\"https:\/\/shellsharks.com\/scrolls\/scroll\/2025-04-11#fediverse\">Scroll 11<\/a><\/li>\n  <li>Got a mention by <a href=\"https:\/\/disassociated.com\/social-media-rest-personal-website-best\/\">disassociated<\/a><\/li>\n  <li>I was featured on <a href=\"https:\/\/lazybea.rs\/ovr-015\/\">Over\/Under<\/a>!<\/li>\n  <li><a href=\"https:\/\/www.unattributed.cc\/the-shellsharks-music-quiz-challenge\/\">Unattributed<\/a> riffed on my <a href=\"https:\/\/shellsharks.com\/music-questions-challenge\">music challenge<\/a> post<\/li>\n  <li>My <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">VM Bootcamp<\/a> was mentioned by <a href=\"https:\/\/medium.com\/@metalsecops\/boost-your-vulnerability-management-program-mastering-the-fundamentals-for-rapid-improvement-464f566ddfc7\">Michael in this Medium article<\/a>.<\/li>\n  <li><a href=\"https:\/\/mastodon.world\/@hamatti\/114426823295314966\">Juhis<\/a> gave my <a href=\"https:\/\/shellsharks.com\/scrolls\">Scrolls<\/a> newsletter a <a href=\"https:\/\/buttondown.com\/juhis\/archive\/004-small-and-personal-web\/\">shoutout<\/a>!<\/li>\n<\/ul>\n\n<h5 id=\"tv\">TV<\/h5>\n\n<p>I\u2019m watching a lot of great stuff this month.<\/p>\n\n<ul>\n  <li>Finished <a href=\"https:\/\/www.imdb.com\/title\/tt2930604\/\">Star Wars: Rebels<\/a> and <a href=\"https:\/\/www.imdb.com\/title\/tt9288030\/\">Reacher<\/a> (season 3). Rebels was great, Reacher was <em>meh<\/em><\/li>\n  <li>Started watching <a href=\"https:\/\/www.imdb.com\/title\/tt3581920\/\">Last of Us<\/a> (season 2), <a href=\"https:\/\/www.imdb.com\/title\/tt9253284\/\">Andor<\/a> (season 2) and <a href=\"https:\/\/www.imdb.com\/title\/tt27444205\/\">Paradise<\/a><\/li>\n  <li>NBA playoffs are goin\u2019 on (looking grim for the Lakers rn frfr)<\/li>\n  <li>Also randomly been watching episodes of <a href=\"https:\/\/www.imdb.com\/title\/tt4591390\/\">Fixer Upper<\/a>. Love that show<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n\n<p>What\u2019s been goin\u2019 on life-wise\u2026<\/p>\n\n<ul>\n  <li>\u26a1\ufe0f My much-anticipated screened porch build has stalled out waiting for the electrician to do his thing<\/li>\n  <li>\ud83c\udf38 My cherry blossoms bloomed and then fell \ud83d\ude22. But, some other plants around the house have started to bloom which is nice. I\u2019ve got a particularly nice <a href=\"https:\/\/en.wikipedia.org\/wiki\/Rhododendron\">Rhododendron<\/a> that has started to pop this week<\/li>\n  <li>\ud83e\udd27 Loving the temperature this time of year\u2026but it\u2019s kinda ruined by the pollen and thus the SNEEZING!! \ud83d\ude24<\/li>\n  <li>\ud83c\udf06 The trip to NYC with the kids was a blast. I always forget how omni-present good food and coffee is there.<\/li>\n  <li>\u2615\ufe0f Still making cold brew. It\u2019s delicious.<\/li>\n  <li>\ud83c\udf4f Speaking of drinks I\u2019m into right now\u2014I\u2019m really in a hard cider phase.<\/li>\n  <li>\u2620\ufe0f <em>ALSO<\/em>, speaking of things that are ruining Spring, I\u2019ve got quite the crop of poison ivy that has started to take over certain parts of my backyard. I <em>really<\/em> despise poison ivy.<\/li>\n  <li>\ud83c\udfb6 Sleep Token is CRUSHING it with their new album releases. Absolutely love the first three songs they have dropped.<\/li>\n<\/ul>\n","pubDate":"Wed, 30 Apr 2025 00:54:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2025\/04\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2025\/04\/30\/log"},{"title":"Captain's Log, Entry: March 27, 2025","author":"mike@shellsharks.com (Mike)","description":"<p>This past month I\u2019ve had quite the resurgence for my site, grew my <a href=\"https:\/\/shellsharks.com\/indieweb\">IndieWeb<\/a> roots, built an entire house, became a \u201ccold brew person\u201d, and turned <strong>37<\/strong>. <em>Eek!<\/em><\/p>\n\n<hr class=\"fin\" \/>\n\n<h5 id=\"site-news\">Site News<\/h5>\n\n<ul>\n  <li>By the end of March I will have published <strong>9<\/strong> <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>, <strong>7<\/strong> blog <a href=\"https:\/\/shellsharks.com\/blogs\">posts<\/a>, <strong>4<\/strong> <a href=\"https:\/\/shellsharks.com\/devlog\">devlogs<\/a>, <strong>4<\/strong> <a href=\"https:\/\/shellsharks.com\/scrolls\">scrolls<\/a>, <strong>1<\/strong> <a href=\"https:\/\/shellsharks.com\/captains-log\">captain\u2019s log<\/a> and shared <strong>14<\/strong> <a href=\"https:\/\/shellsharks.com\/linklog\">links<\/a> on my site. <em>What a month<\/em>! Very active for me indeed.<\/li>\n  <li>I\u2019m quite proud of myself for publishing a new issue of <a href=\"https:\/\/shellsharks.com\/scrolls\">Scrolls<\/a> each week for the last <em>9<\/em> weeks, with a 10th coming out first thing tomorrow! People seem to really enjoy it too! \ud83d\ude01<\/li>\n  <li>I also joined a <em>bunch<\/em> of webrings (e.g. <a href=\"https:\/\/meta-ring.hedy.dev\/#members\">Meta Ring<\/a>, <a href=\"https:\/\/webring.dinhe.net\">retronaut webring<\/a>, <a href=\"https:\/\/fediring.net\/#table-of-members\">Fediring<\/a>, <a href=\"https:\/\/baccyflap.com\/noai\/#members\">NO A.I. webring<\/a>, <a href=\"https:\/\/static.quest\/members\/\">Static.Quest<\/a>, <a href=\"https:\/\/melonland.net\/surf-navigator?site=2513\">MelonLand Surf Club<\/a>, etc\u2026), growing roots and further embracing the <a href=\"https:\/\/shellsharks.com\/indieweb\">IndieWeb<\/a><\/li>\n  <li>I\u2019ve adopted! <a href=\"https:\/\/creaturesinsi.de\/members\"><img src=\"\/assets\/img\/sandog_03_gen1.png\" title=\"Hex\" \/><\/a> \u2022 <a href=\"https:\/\/creaturesinsi.de\/shelter\">You can<\/a> too \ud83e\udd17<\/li>\n<\/ul>\n\n<h6 id=\"site-references\">Site References<\/h6>\n\n<p>My site has been referenced and shared a bunch this month! Here\u2019s some examples\u2026<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/mastodon.social\/@readbeanicecream\/114128002377288404\">ReadBeanIceCream\u2019s shoutout<\/a> related to <a href=\"https:\/\/slashpages.net\">Slash Pages<\/a><\/li>\n  <li>Joel <a href=\"https:\/\/fosstodon.org\/@joel\/114128641724484089\">shares his<\/a> own <a href=\"https:\/\/shellsharks.com\/writing-mannerisms\">Writing Mannerisms<\/a><\/li>\n  <li>D. Moonfire also shares their <a href=\"https:\/\/d.moonfire.us\/blog\/2025\/03\/08\/writing-mannerisms\/\">writing mannerisms<\/a><\/li>\n  <li>Coyote <a href=\"https:\/\/osteophage.neocities.org\/writing\/in-praise-of-links\">praises links<\/a> and includes my <a href=\"https:\/\/shellsharks.com\/hyperlink-travel\">love letter<\/a><\/li>\n  <li>Matt <a href=\"https:\/\/oslo.town\/@matt\/114173592047625928\">shares Scrolls, volume seven<\/a> and <a href=\"https:\/\/infosec.pub\/post\/25037766\">so does Squirrel<\/a><\/li>\n  <li>Jon <a href=\"https:\/\/gts.lylapol.com\/@jpdvm2014\/statuses\/01JQAPYW1ZZDNPTJ1AVVRWAAJ8\">also seems to enjoy Scrolls<\/a>!<\/li>\n  <li>Reilly <a href=\"https:\/\/reillyspitzfaden.com\/notes\/2025\/03\/blogrolls-social-network\/\">liked the idea of Blogrolls as a Social Network<\/a><\/li>\n<\/ul>\n\n<h5 id=\"security\">Security<\/h5>\n<p>It\u2019s about time I get serious about getting back into some kind of technical (<em>probably security-related<\/em>) training. OSWE is still hanging out there (<em>ugh<\/em>), maybe I could do <em>another<\/em> SANS cert (<em>meh<\/em>.)? I\u2019ve also had <a href=\"https:\/\/pentesterlab.com\">PentesterLab<\/a> recommended to me a few times. Also, <a href=\"https:\/\/www.appsecengineer.com\">AppSec Engineer<\/a> has always looked potentially interesting. I\u2019d like to boost my coding chops, do more web app testing and code review\u2026<\/p>\n\n<h5 id=\"tv\">TV<\/h5>\n\n<p>I\u2019ve been watching some good TV this month too\u2026<\/p>\n\n<ul>\n  <li>Finished <a href=\"https:\/\/www.imdb.com\/title\/tt11280740\/episodes\/?season=2\">Severance Season 2<\/a>\u2014<em>wild stuff<\/em>. A lot of questions but excited for the next season.<\/li>\n  <li>I\u2019ve started <a href=\"https:\/\/www.imdb.com\/title\/tt27444205\/\">Paradise<\/a>. Interesting with a great twist to start things off!<\/li>\n  <li>I watched one episode of <a href=\"https:\/\/www.imdb.com\/title\/tt31938062\/\">The Pitt<\/a>. It was <em>ok<\/em>. Time will tell if I keep watching\u2026<\/li>\n  <li>I finished another rewatch of <a href=\"https:\/\/starwars.fandom.com\/wiki\/Clone_Wars\">Clone Wars<\/a>. It\u2019s one of those shows I put on in the background as I\u2019m doin\u2019 other things at my computer. Always enjoyable for me though.<\/li>\n  <li>To continue my Star Wars chronological viewing, I\u2019ve started rewatching the <a href=\"https:\/\/www.imdb.com\/title\/tt8466564\/\">Obi-Wan Kenobi<\/a> TV show.<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n\n<p>What\u2019s been goin\u2019 on life-wise\u2026<\/p>\n\n<ul>\n  <li>I built a (play) <a href=\"https:\/\/www.costco.com\/kidkraft-atrium-breeze-wooden-outdoor-playhouse-with-sunroom-%2526-play-kitchen.product.4000317158.html\">house<\/a>. It took forever but the kids <em>love<\/em> it.<\/li>\n  <li>I\u2019ve gotten into making <a href=\"https:\/\/en.wikipedia.org\/wiki\/Cold_brew_coffee\">cold brew<\/a> coffee. My first batch is <em>almost<\/em> ready!<\/li>\n  <li>I turned <strong>37<\/strong>. Kinda a w\/e birthday\u2026but I guess one year closer to <em>40<\/em>\u2026 <em>yuck!<\/em><\/li>\n  <li>I re-set up my KVM switch so I can easily switch my external monitors back and forth between my personal desktop (Mac Pro) and my work machine. There\u2019s plenty of times I just need more screen realestate at work so this is great.<\/li>\n  <li>I spruced up my office with some more greenery.<\/li>\n  <li>House-wise, I have a lot of projects on the horizon. Tomorrow I\u2019m going to spend as much of the day as I can getting things done in the yard and around the house. Nourishing!<\/li>\n<\/ul>\n","pubDate":"Thu, 27 Mar 2025 15:32:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2025\/03\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2025\/03\/27\/log"},{"title":"Captain's Log, Entry: February 28, 2025","author":"mike@shellsharks.com (Mike)","description":"<p>The past couple weeks I\u2019ve kept myself <em>quite<\/em> busy writing and <a href=\"https:\/\/shellsharks.com\/notes\/2025\/01\/28\/tinkering-with-the-site-again\">tinkering<\/a> with the site and it\u2019s been very rewarding! Aside from that, just watching some interesting TV.<\/p>\n\n<hr class=\"fin\" \/>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<p>Some news about the site itself. It\u2019s been a <em>VERY<\/em> busy past two months.<\/p>\n\n<ul>\n  <li>I\u2019ve been writing\/sharing A LOT. Here\u2019s a count so far this year (2025): Notes: <strong>28<\/strong> | Blogs: <strong>13<\/strong> | Devlogs: <strong>3<\/strong> | Links: <strong>9<\/strong> | Scrolls <strong>5<\/strong><\/li>\n  <li>Completely re-designed my <a href=\"https:\/\/shellsharks.com\/whats-a-home-page\">home page<\/a><\/li>\n  <li>I got the idea for the \u201c<span style=\"color:#CA3342;font-size:4em;line-height: 20px;\">.<\/span>\u201d at the end of my blog post titles from <a href=\"https:\/\/klpx.de\/posts\/hello-world\/\">klpx.de<\/a><\/li>\n  <li>Created the <a href=\"https:\/\/shellsharks.com\/devlog\/shark-fin-hr\">Shark Fin<\/a> <code class=\"language-plaintext highlighter-rouge\">&lt;hr&gt;<\/code><\/li>\n  <li>Narrowed my page\/post margins to make posts look cleaner<\/li>\n  <li>Started the <a href=\"https:\/\/shellsharks.com\/scrolls\">Scrolls<\/a> newsletter <i class=\"ph ph-scroll\"><\/i><\/li>\n  <li>Created an <a href=\"https:\/\/shellsharks.com\/notes\/2025\/02\/19\/infosec-only\">infosec-only RSS feed<\/a> <a href=\"https:\/\/shellsharks.com\/feeds\/infosec-feed.xml\"><i class=\"ph ph-rss\"><\/i><\/a><\/li>\n  <li>Created the <a href=\"https:\/\/shellsharks.com\/linklog\">Linklog<\/a><\/li>\n  <li>Updated my <a href=\"https:\/\/shellsharks.com\/style\">Style<\/a> page with a lot of things that I had forgotten to do (color palettes notably)<\/li>\n  <li>I have another post (<em>ish<\/em>) feed that is a bit hidden. Just a place for me to scream into the <em>void<\/em>\u2026<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/devlog\/pagination-nation\">Paginated<\/a> a lot of my collections<\/li>\n  <li><em>Finally<\/em> added syntax highlighting for my code blocks - <strong><a href=\"https:\/\/github.com\/rouge-ruby\/rouge\/blob\/master\/lib\/rouge\/themes\/monokai.rb\">monokai<\/a><\/strong><\/li>\n  <li>Created the shellsharks \u201c<a href=\"https:\/\/shellsharks.com\/story\">Slash Story<\/a>\u201d<\/li>\n  <li>Colorized my <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a> based on their source (e.g. GoToSocial vs. Mastodon, etc\u2026)<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-mentioned\">Shellsharks Mentioned<\/h6>\n<p>Places i\u2019ve been mentioned around the <a href=\"https:\/\/shellsharks.com\/indieweb\">IndieWeb<\/a>.<\/p>\n\n<ul>\n  <li>by <a href=\"https:\/\/jeremyadampalmer.com\/bookwyrm\">jeremyadampalmer<\/a><\/li>\n  <li>by <a href=\"https:\/\/matthewguy.com\/degoogle-my-life\/\">Matthew Guy<\/a><\/li>\n  <li>in the <a href=\"https:\/\/bacardi55.io\/pages\/more\/#english-blogger\">bacardi55 BlogRoll<\/a><\/li>\n  <li>by <a href=\"https:\/\/social.piewpiew.se\/@coffe\/114046348905103548\">@coffe@social.piewpiew.se<\/a><\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<p>What I\u2019ve been watchin\u2019\u2026<\/p>\n\n<ul>\n  <li>Started binging <a href=\"https:\/\/www.imdb.com\/title\/tt14688458\/\">Silo<\/a> and got through the two available seasons. Looooots of questions and maybe identified plotholes? Still processing it to be honest.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt11280740\/\">Severance<\/a>: is weird, wild and wonderful as usual!<\/li>\n  <li>I started casually rewatching <a href=\"https:\/\/www.imdb.com\/title\/tt0458290\/\">Clone Wars<\/a> after discover the podcast <a href=\"https:\/\/amorecivilizedage.libsyn.com\">A More Civilized Age<\/a>. Just love me some Star Wars!<\/li>\n  <li>Want to get into the newest season of <a href=\"https:\/\/www.imdb.com\/title\/tt9288030\/\">Reacher<\/a>, but haven\u2019t yet.<\/li>\n<\/ul>\n\n<p>I\u2019m looking to regain some academic\/professional focus moving forward. I have a lead on some good learning resources and I think I finally have some traction on <em>stuff<\/em> in general. This will almost certainly translate into more technical \/ infosec-related pieces here on the site. Here\u2019s to it!<\/p>\n","pubDate":"Fri, 28 Feb 2025 16:31:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2025\/02\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2025\/02\/28\/log"},{"title":"Captain's Log, Entry: January 3, 2025","author":"mike@shellsharks.com (Mike)","description":"<p>Overall, this year was <em>kinda light<\/em>. I think it\u2019s safe to say I\u2019ve experienced at least <em>moderate<\/em> burnout and that shows - here on the blog, and certainly in my professional life. Somewhat comically, I\u2019ve been meaning to write about burnout, and my experience with it, but have been too burned out to do so. So what\u2019s my <a href=\"#look-ahead-to-2025\">plan for 2025<\/a>?<\/p>\n\n<h1 id=\"shellsharks-wrapped-2024\">Shellsharks Wrapped 2024<\/h1>\n\n<p>Some stats from the blog and miscellaneous thoughts about the past year\u2026<\/p>\n\n<ul>\n  <li>Blog posts: <strong>10<\/strong> (<em>almost one a month, not too bad actually<\/em>)<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/notebook\">Notes<\/a>: <strong>81<\/strong> (<em>I really made use of this format this year<\/em>)<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/captains-log\/\">Captain Logs<\/a>: <strong>8<\/strong><\/li>\n  <li>Weeks I made a <a href=\"https:\/\/shellsharks.com\/changelog\">change<\/a> to the site: <strong>51<\/strong> (<em>just about every week of the year!<\/em>)<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/devlog\">Developer Logs<\/a>: <strong>2<\/strong> (<em>Not an oft-used content medium for me yet<\/em>)<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/podcast\">Podcasts<\/a>: <strong>3<\/strong> (<em>My attempt at \u201cSeason 2\u201d of the Podcast was a bit of a flop. Who knows, maybe 2025 will see a better revival\u2026<\/em>)<\/li>\n  <li>Hours spent working on Shellsharks-related <em>stuff<\/em>: <strong>~576h<\/strong> (~24d)<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities\">Designer Vulnerabilities<\/a>: up to <strong>569<\/strong><\/li>\n  <li>Over <strong>4000<\/strong> <a href=\"https:\/\/shellsharks.com\/infosec-blogs\">infosec blogs<\/a><\/li>\n  <li>My blog is now over <a href=\"https:\/\/shellsharks.com\/notes\/2024\/05\/30\/5-years\">5 years<\/a> old!<\/li>\n<\/ul>\n\n<h1 id=\"look-ahead-to-2025\">Look-ahead to 2025<\/h1>\n\n<p>Every year I write up some resolution-esque list of goals for the year. It\u2019s just a fun way for me to try and situate myself, think about what I could accomplish and it\u2019s usually quite amusing to look back and see what I <em>didn\u2019t<\/em> accomplish by year end. For example, one of my goals from last year was to recreate this delicious boozy eggnog I had at a local restaurant in my area. Not only did I <em>not<\/em> succeed, I didn\u2019t even attempt it. <em>Sigh<\/em>, maybe this year? Alright, so what might 2025 bring?<\/p>\n\n<ul>\n  <li>I\u2019ve been a bit on-and-off with my gym\/lifting routine in the last few months of 2024, I\u2019d like to regain my consistency and continue with some of my \u201cdaily\u201d goals (i.e. 100+ pushups a day)<\/li>\n  <li>Similarly, I want to get back to my muscle-gaining diet of ~200g protein\/day and just generally eat healthier.<\/li>\n  <li>Professionally, who knows what 2025 will bring. But I\u2019d like to get more involved with projects and research activities, converting both into meaningful things to write about here on the blog (and impactful things for work itself).<\/li>\n  <li>The OSWE training\/cert is still hanging out there, maybe I can get the time\/energy to actually do it.<\/li>\n  <li>I want to find both at-work, and side coding projects.<\/li>\n  <li>Blog-wise, I want to be more active. More posts, more longer-form research-type articles, etc\u2026<\/li>\n  <li>To supplement my work-experience, training and research activities, I have a few infosec books I\u2019d like to read through this year. Currently staring at (on my desk), \u201cThe Art of Software Security Assessment\u201d, \u201cSerious Cryptography\u201d, \u201cBulletproof TLS and PKI\u201d &amp; \u201cFull Stack Python Security\u201d (among others).<\/li>\n  <li>On the family side of things, it\u2019d be awesome to teach my son how to swim!<\/li>\n<\/ul>\n\n<p>Alright, I\u2019m-a get to it\u2026<\/p>\n","pubDate":"Fri, 03 Jan 2025 09:35:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2025\/01\/03\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2025\/01\/03\/log"},{"title":"Captain's Log, Entry: September 27, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>I moved! As such, I\u2019ve been incredibly busy with all things NOT related to my blog or surrounding properties. I\u2019ve got plans to rekindle work on the site, training, infosec research, <em>hell<\/em>, even the podcast. But I need to <em>ease<\/em> my way back into it all. Until next time!<\/p>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt7631058\/episodes\/?season=2\">The Rings of Power<\/a> has been thoroughly entertaining. Though with the number of story lines, it seems stretched a bit thin at times.<\/li>\n<\/ul>\n","pubDate":"Fri, 27 Sep 2024 08:22:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/09\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/09\/27\/log"},{"title":"Captain's Log, Entry: July 29, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve been way less active on the site than I have in the past several months. I could argue that there\u2019s a level of burnout at play, but moreso I think I\u2019m just taking some time to regroup and focus down on a few priority things for a bit. Namely, work, family and my current house-hunting quest (while also trying to maintain some sorta fitness regimen). In months past, I would stretch myself thin, or forgo sleeping (among <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/09\/where-i-find-the-time\">other tricks<\/a>) in favor of \u201cdoing it all\u201d and I certainly have the capacity to do this in stretches, but it\u2019s not maintainable long-term. Eventually, something suffers and ultimately, it <em>can\u2019t<\/em> be any of the formerly mentioned things. They should always, and are always, priority number 1. The result? Well, less posts, the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a> is kinda in limbo, <a href=\"https:\/\/shellsharks.com\/sharkweek\">&gt;Shark Week<\/a> 2024 is postponed indefinitely, etc\u2026<\/p>\n\n<p>But I\u2019m not gone. You\u2019ll likely see a sprinkling of <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a> making their way onto the site and I\u2019m still fairly active on <a href=\"https:\/\/shellsharks.social\/@shellsharks\">Mastodon<\/a> if you follow me there. Once I stabilize on the important <em>shtuff<\/em>, I\u2019ll be able to make time once more for the extra-curriculars. One thing I <em>have<\/em> had some time for however, has been finishing up a few <a href=\"#tv\">TV shows<\/a>\u2026<\/p>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/en.wikipedia.org\/wiki\/The_Boys_(TV_series)\">The Boys<\/a> (Season 4) wrapped and it was, as usual, very entertaining, lots of twists, high-stakes and I can\u2019t way for the next season!<\/li>\n  <li><a href=\"https:\/\/www.rottentomatoes.com\/tv\/star_wars_the_acolyte\">Acolyte<\/a> ended much the way it began - <em>kinda meh<\/em>. There were a few bright spots throughout the show (the fight scenes), but ultimately the dialog and the plot had it somewhere between \u201ccringe\u201d and head-scratchy for most of the show.<\/li>\n  <li>\n    <p><a href=\"https:\/\/www.imdb.com\/title\/tt11198330\/\">House of the Dragon<\/a> has one more episode left in this season and it\u2019s shaping up to be pretty crazy! It\u2019s hard to compare two seasons of this show to the entirety of its legendary predecessor, Game of Thrones, but for me, I think it has been <em>as<\/em> good. Having more dragons definitely helps here \ud83d\ude04. I expect some serious stuff to go down in the finale, but with the show renewed for a third season, there will be plenty of unresolved story lines. My <em>guess<\/em>(es)?<\/p>\n  <\/li>\n  <li>At least <strong>one<\/strong> of the newly minted (low-born) dragon-riders won\u2019t make it. (Probably the blacksmith guy)<\/li>\n  <li>A <em>bigger<\/em> character (and their dragon) may not make it. Maybe Daemon + Caraxes?<\/li>\n  <li>Vhagar and Aemond are sure to survive, as is Rhaenyra.<\/li>\n<\/ul>\n","pubDate":"Mon, 29 Jul 2024 10:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/07\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/07\/29\/log"},{"title":"Captain's Log, Entry: June 27, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>A much needed break this month, with only a few things added to the site.<\/p>\n\n<h6 id=\"shellsharks-news\">Shellsharks News<\/h6>\n<ul>\n  <li>My \u201c<a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities\">Designer Vulnerabilities<\/a>\u201d list has officially crossed 500 items.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/en.wikipedia.org\/wiki\/The_Boys_(TV_series)\">The Boys<\/a> (Season 4) is as usual - <em>outstanding<\/em>.<\/li>\n  <li><a href=\"https:\/\/www.rottentomatoes.com\/tv\/star_wars_the_acolyte\">Acolyte<\/a> is <em>OK<\/em>. I like it more than say the <a href=\"https:\/\/www.imdb.com\/title\/tt3778644\/\">Solo<\/a> movie, or the <a href=\"https:\/\/www.imdb.com\/title\/tt8466564\/\">Obi-Wan Kenobi<\/a> show, but this is far from high praise. It\u2019s hard to make anything with Jedis and light sabers <em>bad<\/em>, and I\u2019m not saying that Acolyte is bad, but after 5 episodes I just find the plot lacks complexity, most of the characters seem sort of lifeless and the dialog is particularly, \u201cmeh\u201d. Episode 5 definitely ratcheted up some excitement, and I think there\u2019s plenty of time for the show to become far more interesting, but it just isn\u2019t there yet for me.<\/li>\n<\/ul>\n\n<h6 id=\"the-shellsharks-podcast\">The Shellsharks Podcast<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> is hummin\u2019 along. I just need to find time to edit!<\/li>\n<\/ul>\n\n<h5 id=\"life\">Life<\/h5>\n<ul>\n  <li>Always busy. House hunting, kids are sick, summer pool days, etc\u2026 Finding the time and energy to learn or to dedicate here to the blog isn\u2019t always as easy as it once was. But life is good.<\/li>\n<\/ul>\n","pubDate":"Thu, 27 Jun 2024 08:06:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/06\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/06\/27\/log"},{"title":"Captain's Log, Entry: May 29, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>Another very active month for me shellsharks-wise (thanks to <a href=\"https:\/\/shellsharks.com\/notes\/2024\/04\/30\/weblogpomo-2024#title\">WeblogPoMo 2024<\/a>), you can (<em>as is usual now<\/em>) peruse the unified list of things added to the site via the <a href=\"https:\/\/shellsharks.com\/activity\">Activity<\/a> feed. 16 <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>, 7 blog <a href=\"https:\/\/shellsharks.com\/\">posts<\/a>, 2 <a href=\"https:\/\/shellsharks.com\/podcast\">podcasts<\/a> and a ton of other page updates, <em>yowza<\/em>!<\/p>\n\n<h6 id=\"shellsharks-news\">Shellsharks News<\/h6>\n<ul>\n  <li>Participated in my first <a href=\"https:\/\/weblog.anniegreens.lol\/weblog-posting-month-2024\/participators\">WeblogPoMo<\/a><\/li>\n  <li>Here are some other mentions around the web\u2026\n    <ul>\n      <li><a href=\"https:\/\/dmv.community\/@jcrabapple\/112372041264499492\">Jcrabapple mentions my Fry Cut Rankings<\/a><\/li>\n      <li>I\u2019m now in the <a href=\"https:\/\/chrisburnell.github.io\/interests-directory\/\">Interests directory<\/a><\/li>\n      <li>Featured in <a href=\"https:\/\/www.vzqk50.com\/blogroll\/\">Apis Necros blogroll<\/a><\/li>\n      <li>Credited in <a href=\"https:\/\/slashpages.net\">Slash Pages<\/a> for both coining the name <em>and<\/em> for <a href=\"https:\/\/shellsharks.com\/chipotle\">\/Chipotle<\/a>. (\/Chipotle even featured on <a href=\"https:\/\/indieweb.org\/chipotle\">indieweb.org<\/a>) <a href=\"https:\/\/rknight.me\/blog\/slash-pages\/\">src<\/a><\/li>\n      <li>Mentioned <a href=\"https:\/\/blog.lyokolux.space\/posts\/2024-05-26-slashpages-or-a-standard-for-the-indie-web\/\">here<\/a> related to Slash Pages<\/li>\n      <li>Also <a href=\"https:\/\/zacs.site\/blog\/my-evening-reads.html\">mentioned here<\/a> and <a href=\"https:\/\/www.techsolvency.com\/blue-team\/\">here<\/a><\/li>\n      <li>Listed in <a href=\"https:\/\/bukmark.club\/directory\/#section-S\">bukmark.club directory<\/a><\/li>\n      <li>I\u2019m in the <a href=\"https:\/\/fosstodon.org\/@blogroll\/112482982827686256\">@blogroll@fosstodon.org<\/a>!<\/li>\n      <li>Mentioned by <a href=\"https:\/\/cybersecurity.theater\/@tweedge\/112477314250173244\">Chris Partridge<\/a><\/li>\n      <li>Recommended by <a href=\"https:\/\/emacs.ch\/@mms\/112469140392421973\">@mms@emacs.ch<\/a><\/li>\n      <li><a href=\"https:\/\/www.manton.org\/2024\/05\/29\/today-i-learned.html\">Manton Reece making a \/chipotle<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"learning\">Learning<\/h6>\n<ul>\n  <li>I\u2019ve started <a href=\"https:\/\/shellsharks.com\/trying-harder-web-300\">WEB-300 once again<\/a><\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Mainly been watching the NBA Playoffs<\/li>\n<\/ul>\n\n<h6 id=\"the-shellsharks-podcast\">The Shellsharks Podcast<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> <em>Season 2<\/em> is <a href=\"https:\/\/podcast.shellsharks.com\/@ShellsharksPodcast\/\">live on Castopod<\/a>! Stream now on <a href=\"https:\/\/open.spotify.com\/show\/38qCNxDGiFXMgr5cMvlPoa\">Spotify<\/a>, <a href=\"https:\/\/podcasts.apple.com\/us\/podcast\/the-shellsharks-podcast\/id1566550833\">Apple Podcasts<\/a>, <a href=\"https:\/\/podcast.shellsharks.com\/@ShellsharksPodcast\/feed.xml\">Castopod<\/a> and more!<\/li>\n  <li>My show is indexed on the <a href=\"https:\/\/podcastindex.org\/podcast\/3753304\">Podcast Index<\/a> (You can <a href=\"https:\/\/podcastindex.org\/search?q=shellsharks&amp;type=all\">search<\/a> for it)<\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions-followup\">Shellsharks Resolutions Followup<\/h2>\n<p>Following up on my <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log#shellsharks-resolutions\">resolutions for the year<\/a>.<\/p>\n\n<ul>\n  <li>Well, <a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> is <a href=\"https:\/\/podcast.shellsharks.com\/@ShellsharksPodcast\">back<\/a>!<\/li>\n<\/ul>\n","pubDate":"Wed, 29 May 2024 10:48:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/05\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/05\/29\/log"},{"title":"Captain's Log, Entry: April 29, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>A pretty active month for me shellsharks-wise, you can peruse the unified list of things added to the site via the <a href=\"https:\/\/shellsharks.com\/activity\">Activity<\/a> feed. 17 <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>, 2 blog <a href=\"https:\/\/shellsharks.com\/\">posts<\/a>, 2 <a href=\"https:\/\/shellsharks.com\/devlog\">devlogs<\/a> and a ton of other page updates, <em>phew<\/em>!<\/p>\n\n<h6 id=\"shellsharks-news\">Shellsharks News<\/h6>\n<ul>\n  <li>I\u2019ve updated the <strong>IndieSec<\/strong> Smart List for the Mammoth Mastodon client with 50 new accounts.<\/li>\n  <li>Here are some other mentions around the web\u2026\n    <ul>\n      <li><a href=\"https:\/\/social.lol\/@flamed\/112306803795924486\">fLaMEd bookmark<\/a><\/li>\n      <li><a href=\"https:\/\/crashthearcade.com\/2024\/04\/07\/thoughts-on-running-your-own-mastodon-instance\/\">CrashTheArcade<\/a><\/li>\n      <li><a href=\"https:\/\/infosec.press\/wrzlbrmpfts-cyberlights\/cyberlights-week-13-2024\">wrzlbrmpft\u2019s cyberlights week 13<\/a><\/li>\n      <li><a href=\"https:\/\/social.vivaldi.net\/@knightlie\/112194636868985158\">Jamie Knight on Mastodon<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been watching <a href=\"https:\/\/www.imdb.com\/title\/tt12637874\/\">Fallout<\/a> which has been pretty entertaining.<\/li>\n<\/ul>\n\n<h6 id=\"the-shellsharks-podcast\">The Shellsharks Podcast<\/h6>\n<ul>\n  <li>My show is indexed on the <a href=\"https:\/\/podcastindex.org\/podcast\/3753304\">Podcast Index<\/a> (You can <a href=\"https:\/\/podcastindex.org\/search?q=shellsharks&amp;type=all\">search<\/a> for it)<\/li>\n  <li>Am looking to reboot the show soon but have to figure out some hardware issues first\u2026<\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions-followup\">Shellsharks Resolutions Followup<\/h2>\n<p>Following up on my <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log#shellsharks-resolutions\">resolutions for the year<\/a>.<\/p>\n\n<ul>\n  <li>I\u2019ve moved away from FontAwesome to <a href=\"https:\/\/phosphoricons.com\">Phosphor<\/a>!<\/li>\n<\/ul>\n","pubDate":"Mon, 29 Apr 2024 09:33:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/04\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/04\/29\/log"},{"title":"Captain's Log, Entry: March 31, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>Apparently <a href=\"https:\/\/www.tiktok.com\/@bytesizedsecurity\/video\/7340729475618884895\">my site blew up on TikTok<\/a>. The video from <a href=\"https:\/\/www.tiktok.com\/@bytesizedsecurity\">@bytesizedsecurity<\/a> sent my page views through the roof. I had 1000% of the normal clicks within the first 4 days of March. The video itself has nearly 400k views! This had the side effect of blowing through my Font Awesome icon load threshold in under 4 days.<\/p>\n\n<ul>\n  <li>I\u2019ve added myself to various directories mentioned <a href=\"https:\/\/maurice-renck.de\/en\/blog\/2024\/website-directories\">here<\/a>.<\/li>\n  <li>Some other mentions\u2026\n    <ul>\n      <li><a href=\"https:\/\/infosec.exchange\/@timb_machine\/112062198923907564\">Tim Brown - Interesting links of the week<\/a><\/li>\n      <li><a href=\"https:\/\/moth.social\/@mammoth\/112134705639595585\">IndieSec Mammoth Smart List announcement<\/a> and <a href=\"https:\/\/moth.social\/@mammoth\/112134717460087566\">this<\/a><\/li>\n      <li><a href=\"https:\/\/social.lol\/@cory\/112189256123404950\">@cory@social.lol shoutout<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Halo Season 2 was fantastic<\/li>\n  <li>Started watching Shogun but am behind<\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions-followup\">Shellsharks Resolutions Followup<\/h2>\n<p>Following up on my <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log#shellsharks-resolutions\">resolutions for the year<\/a>.<\/p>\n\n<p>On Mastodon, I\u2019ve officially moved my <a href=\"https:\/\/shellsharks.social\/@shellsharks\">main account<\/a> to <a href=\"https:\/\/shellsharks.com\/own-my-social\">shellsharks.social<\/a>! Thanks to <a href=\"https:\/\/masto.host\">masto.host<\/a> for hosting. One day I\u2019ll self host I\u2019m sure\u2026 <a href=\"https:\/\/fediverse.one\/display\/fdc30534-6265-def4-6e12-f17873482779\">fediverseobserver even spotted it<\/a>!<\/p>\n","pubDate":"Sun, 31 Mar 2024 21:50:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2024\/03\/31\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/03\/31\/log"},{"title":"Captain's Log, Entry: February 28, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>New pages, internet features, some new TV and a few resolution followups.<\/p>\n\n<h6 id=\"shellsharks-news\">Shellsharks News<\/h6>\n\n<p>I\u2019ve added a variety of new pages to my site!<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/style\">Style guide<\/a> page: For demonstrating how I\u2019ve styled various HTML elements.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/feeds\">Feeds<\/a> page: An aggregation point for my various web feeds.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/tags?tag=bestof#info\">Best of<\/a> shortcut: Links to my most popular\/interesting posts.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/now#supporting\">Supports<\/a> section: Creators and causes I support.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/uses#referrals\">Referrals<\/a> section: Referral links for services I use.<\/li>\n  <li>\u201c<a href=\"https:\/\/shellsharks.com\/starsharks\">Starsharks<\/a>\u201d: Grade A silliness, but a monument all the same.<\/li>\n<\/ul>\n\n<p>Shellsharks, as featured by:<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/macgirvin.com\/chanview\/?f=&amp;hash=https%3A%2F%2Finfosec.exchange%2Fusers%2Fshellsharks\">Whatever this is<\/a><\/li>\n  <li><a href=\"https:\/\/rss-parrot.net\/web\/feeds\/bsky.app.profile.shellsharks.com\">Follow my Bluesky on RSS Parrot<\/a><\/li>\n  <li>A mention in <a href=\"https:\/\/jamesg.blog\/2024\/02\/19\/personal-website-ideas\/\">James\u2019 Coffee Blog<\/a><\/li>\n  <li>Cylect <a href=\"https:\/\/cylect.io\/project-anthony-ultimate-osint-tool\">As featured in\u2026<\/a><\/li>\n<\/ul>\n\n<p><a href=\"https:\/\/shellsharks.social\/deck\/@afterdark\">Shellsharks after Dark<\/a> - An experimental mastodon alt account for slightly less on-topic stuff.<\/p>\n\n<h6 id=\"tv\">TV<\/h6>\n<p>Here\u2019s some shows\/movies I\u2019ve watched\/am watching\u2026<\/p>\n<ul>\n  <li><em><a href=\"https:\/\/en.wikipedia.org\/wiki\/True_Detective_(season_4)\">True Detective: Night Country<\/a><\/em> was great! I need to go back and watch season 3 I think.<\/li>\n  <li><a href=\"https:\/\/en.wikipedia.org\/wiki\/Fargo_(season_5)\">Fargo Season 5<\/a> was a bit weird at times but very entertaining.<\/li>\n  <li>I enjoyed <a href=\"https:\/\/www.imdb.com\/title\/tt10676048\/\">The Marvels<\/a><\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions-followup\">Shellsharks Resolutions Followup<\/h2>\n<p>Following up on my <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log#shellsharks-resolutions\">resolutions for the year<\/a>.<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/shellsharks.social\/\">Shellsharks.social<\/a> is live, courtesy of <a href=\"https:\/\/masto.host\">Masto.host<\/a>. I am currently running this as an experiment and using the lowest tier, \u201cMoon\u201d. We\u2019ll see how it goes! For now, the only account on the instance is what I\u2019ve called \u201c<a href=\"https:\/\/shellsharks.social\/@afterdark\">afterdark<\/a>\u201d, which will be slightly-off-topic, but <em>shellsharks-ey<\/em> type of posts\/comments.<\/li>\n<\/ul>\n","pubDate":"Wed, 28 Feb 2024 08:54:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2024\/02\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/02\/28\/log"},{"title":"Captain's Log, Entry: January 28, 2024","author":"mike@shellsharks.com (Mike)","description":"<p>Shellsharks <strong>3.0<\/strong> is <em>live<\/em>! On the surface, it won\u2019t look like much, but underneath I changed quite a bit so the site would be more accessible, more robust and easier to add things to in the future. For readers, you\u2019ll notice a new, snappier hamburger menu, and more consistent \/ lower impact header bar. Search has also been switched from <em><a href=\"https:\/\/github.com\/chinchang\/super-search\">super-search<\/a><\/em> to <em><a href=\"https:\/\/lunrjs.com\">lunr.js<\/a><\/em> which comes with a lot of inherent benefits but at least one notable drawback.<\/p>\n\n<ul>\n  <li>\n    <p>My <a href=\"https:\/\/shellsharks.com\/now\">\/Now<\/a> page is <em>now<\/em> live. This page features a regularly updated list of things I am doing.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/shellsharks.com\/blogroll\">\/blogroll<\/a> temporarily links to <a href=\"https:\/\/shellsharks.com\/infosec-blogs#boutique-security-blogs\">Boutique Security Blogs<\/a>. I am working on a more tailored list for future publishing.<\/p>\n  <\/li>\n  <li>\n    <p>I am still working on a <em>ton<\/em> of things in-flight and will document them in future logs to come (as well as call them out in the <a href=\"https:\/\/shellsharks.com\/changelog\">change log<\/a>) as they are rolled out. <em>Some<\/em> of these future enhancements are also listed in the <a href=\"https:\/\/shellsharks.com\/roadmap\">roadmap<\/a>.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Still working through a play-through of <a href=\"https:\/\/www.mariowiki.com\/Super_Mario_Odyssey\">Super Mario Odyssey<\/a>. I am through the main story and now working on going back and picking up the rest of the post-Peach-saving moons!<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<p>Here\u2019s some shows\/movies I\u2019ve watched\u2026<\/p>\n<ul>\n  <li><em><a href=\"https:\/\/www.imdb.com\/title\/tt9288030\/\">Reacher<\/a><\/em> season 2 was <em>OK<\/em>. Not nearly as good as season 1 was.<\/li>\n  <li><em>True Detective: Night Country<\/em> through 2 episodes has been crazy good.<\/li>\n  <li>Literally watching <em>Mission: Impossible - Dead Reckoning<\/em> as I type this out\u2026<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Got some vacation coming up I\u2019m very excited about!<\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions-followup\">Shellsharks Resolutions Followup<\/h2>\n<p>Following up on my <a href=\"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log#shellsharks-resolutions\">resolutions for the year<\/a>.<\/p>\n\n<ul>\n  <li>\n    <p>A new <a href=\"https:\/\/shellsharks.com\/search\">search<\/a> page is live which leverages <a href=\"https:\/\/lunrjs.com\">Lunr.js<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>The <a href=\"https:\/\/shellsharks.com\/notes\/2023\/12\/22\/rearchitecting-shellsharks\">site re-archicture I proposed<\/a> is under way. After considering moving platforms altogether (to something like Ghost) I decided to stick with Jekyll+GitHub Pages. I also toyed around with starting from scratch with a new theme that had a wire frame I liked and better search functionality baked in out of the box but was unsuccessful here. So ultimately I just cloned my site repo and hand-wrote the new grid-based wire-frame grid and re-worked a lot of the liquid syntax, CSS, HTML elements, etc\u2026 This is still a work in-progress but the core functionality for what I\u2019m calling \u201cShellsharks 3.0\u201d is essentially complete and running at this point. A large \u201cclean up\u201d effort is also planned (<a href=\"https:\/\/shellsharks.com\/roadmap\">as is many other things<\/a>).<\/p>\n  <\/li>\n<\/ul>\n","pubDate":"Sun, 28 Jan 2024 21:36:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2024\/01\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2024\/01\/28\/log"},{"title":"Captain's Log, Entry: December 30, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>After all this time I finally got Covid. Right before Christmas so <em>perfect<\/em> timing and definitely messed up a bunch of plans. Had about 28 hours of awful symptoms but since then have felt fine. 0\/10 don\u2019t recommend.<\/p>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>After playing <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/03\/super-mario-wonder\">Super Mario Wonder<\/a>, I\u2019ve been playing through a bunch of older Mario games I missed over the years. Right now I\u2019m working through <a href=\"https:\/\/www.mariowiki.com\/Super_Mario_Odyssey\">Super Mario Odyssey<\/a> (which I am loving) and next will try out <a href=\"https:\/\/www.mariowiki.com\/Super_Mario_Galaxy\">Super Mario Galaxy<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<p>Here\u2019s some shows\/movies I\u2019ve been watching or am looking to watch soon\u2026<\/p>\n<ul>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt9288030\/\">Reacher<\/a> season 2<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt17220216\/\">Monarch<\/a><\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt23289160\/\">Godzilla Minus One<\/a><\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt0804484\/\">Foundation<\/a><\/li>\n<\/ul>\n\n<h2 id=\"shellsharks-resolutions\">Shellsharks Resolutions<\/h2>\n<p>Every year I come up with (mostly <em>personal<\/em>) resolutions that have traditionally been quite\u2026 <em>lofty<\/em>. I think it\u2019s pretty funny to go back and look at these at the end of each year. This year I\u2019ve taken a more serious approach to these resolutions and a bit more specific\/granular. I\u2019ve also made some shellsharks-related resolutions I\u2019d like to share below.<\/p>\n\n<ul>\n  <li>I\u2019m starting a new role at work and want to use this to springboard into more technical writing on the blog about what I am working on.<\/li>\n  <li>Migrate from Pocket as my read-later service to something self-hosted (e.g. <a href=\"https:\/\/github.com\/ckolderup\/postmarks\">Postmarks<\/a>, <a href=\"https:\/\/omnivore.app\">Omnivore<\/a>)<\/li>\n  <li>Dust off my <a href=\"https:\/\/shellsharks.com\/symphonic-vulnerability-surface-mapping#vulnscape\">Vulnscape<\/a> project and see if I can turn it into anything.<\/li>\n  <li>Turn my <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities#title\">designer vulnerabilities<\/a> list into a more dedicated, full-featured resource.<\/li>\n  <li>Add searching\/filtering to my <a href=\"https:\/\/shellsharks.com\/notebook\">notebook<\/a>.<\/li>\n  <li>Stand up Mastodon instance for shellsharks.com (or similar domain) and either use this as my main Mastodon account or use it for stuff related to the site (e.g. updates, posts, etc\u2026)<\/li>\n  <li>Keep up the tradition for <a href=\"https:\/\/shellsharks.com\/sharkweek\">&gt;SharkWeek<\/a> \u201824 + <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/01\/nablopomo-2023\">NaBloPoMo<\/a> \u201824.<\/li>\n  <li>Reboot <a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> and record a show monthly.<\/li>\n  <li>Transition off FontAwesome.<\/li>\n  <li>\u201824 will mark the Shellsharks 5-year anniversary. I\u2019d like to commemorate \/ celebrate somehow.<\/li>\n  <li>I\u2019ve been <a href=\"https:\/\/shellsharks.com\/notes\/2023\/12\/22\/rearchitecting-shellsharks\">noodling on how to rearchitect the site<\/a>. Perhaps I make some technological changes or additions.<\/li>\n<\/ul>\n","pubDate":"Sat, 30 Dec 2023 09:21:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/12\/30\/log"},{"title":"Captain's Log, Entry: November 27, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>NaBloPoMo, Framework, Super Mario Wonder, and my gym debacle - <em>what a pickle!<\/em><\/p>\n\n<h6 id=\"shellsharks-news\">Shellsharks News<\/h6>\n<ul>\n  <li>Nearly through <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/01\/nablopomo-2023\">#NaBloPoMo<\/a>. Didn\u2019t hit every goal I set out with but am happy that I gave myself time to write about some of the non-security things in my life.<\/li>\n  <li>I\u2019ve exceeded <strong>400<\/strong> <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities#title\">named vulns<\/a>.<\/li>\n  <li>I hit my <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/09\/1-year-infosec-exchange-anniversary\">1-year anniversary on infosec Mastodon<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/frame.work\/\">Framework<\/a> laptop has not really fit into my life\/work as much as <a href=\"https:\/\/shellsharks.com\/notes\/2023\/08\/19\/framework-13-diy\">I thought I could make it<\/a>. So far, I\u2019ve really been splitting time between my Mac Pro and my iPad Pro and that has been great for my current blogging, browsing and gaming workloads.<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>I finished up <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/03\/super-mario-wonder\">Super Mario Wonder<\/a>. <em>It was great<\/em>!<\/li>\n  <li>I installed an <a href=\"https:\/\/shellsharks.com\/notes\/2023\/11\/22\/retro-gaming-with-delta\">emulator<\/a> on my iPad and have been playing some <a href=\"https:\/\/shellsharks.com\/notes\/2011\/07\/07\/favorite-nintendo-games\">classics<\/a>. To start, I played Super Mario World and now am running through classic Super Mario RPG. I decided to do this rather than pick up the remake, at least for now.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I really haven\u2019t been watching any TV. I didn\u2019t even finish Loki season 2.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>I <em>finally<\/em> switched gyms after Lifetime decided to go \u201cfull pickle\u201d and replace their basketball courts with pickle ball courts. I took my talents to The Fitness Equation.<\/li>\n<\/ul>\n","pubDate":"Mon, 27 Nov 2023 14:23:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2023\/11\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/11\/27\/log"},{"title":"Captain's Log, Entry: October 27, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>For the first time since I started the <em>Captain\u2019s Log<\/em> in <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/03\/02\/log\">March of 2021<\/a>, I missed posting a monthly entry. Being a father of two, one of those an infant sure takes work! I\u2019m back now though and looking to be more active on the site again.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>Thanks to Medium\u2019s <a href=\"https:\/\/help.medium.com\/hc\/en-us\/articles\/360017581433-About-the-paywall\">incessant paywall<\/a>, and modals about their paywall, I made the decision to remove Medium-based blogs from my <a href=\"https:\/\/shellsharks.com\/infosec-blogs\">Infosec Blogs<\/a> list altogether. Honestly, I had wanted to do this for some time because I felt the overwhelming majority of the Medium sites I had added were low-quality or soon-abandoned. This took the overall blog count from 4163 to 3253. Though around that same time I went through all my Mastodon follows and added all of their personal blogs.<\/li>\n<\/ul>\n\n<h6 id=\"security-community\">Security Community<\/h6>\n<ul>\n  <li><a href=\"https:\/\/mastodon.social\/@campuscodi\">Catalin Cimpanu<\/a>, proprietor of the <a href=\"https:\/\/riskybiznews.substack.com\/about\">Risky Business newsletter<\/a> and <a href=\"https:\/\/risky.biz\">RiskyBiz podcast<\/a> posted <a href=\"https:\/\/mastodon.social\/@campuscodi\/111211931950919900\">a link<\/a> to my <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities\">Designer Vulnerabilities<\/a> list on Mastodon. This was in turn boosted by <a href=\"https:\/\/mastodon.social\/@briankrebs@infosec.exchange\">Brian Krebs<\/a> to his 58k+ followers. <em>So yeah, I\u2019m kinda a big deal now<\/em>.<\/li>\n<\/ul>\n\n<h6 id=\"career\">Career<\/h6>\n<ul>\n  <li>After ~15 years in my career, I plan to take some time to reflect on this first era of my professional life and dream\/plan what is in store for the next 15 years. <em>More to come on this.<\/em><\/li>\n<\/ul>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>I\u2019ve <em>finally<\/em> taken some time to play with <a href=\"https:\/\/www.theverge.com\/23787477\/apple-ipados-17-stage-manager-ipad-multitasking\">Stage Manager<\/a> on my <a href=\"https:\/\/www.apple.com\/ipad-pro\/\">iPad Pro<\/a> running the latest iPad OS (<a href=\"https:\/\/www.apple.com\/ipados\/ipados-17\/\">v17<\/a>) and <em>WoW<\/em>, coupling it with the <a href=\"https:\/\/support.apple.com\/guide\/ipad\/connect-to-a-display-with-a-cable-ipadf1276cde\/ipados\">external monitor support<\/a> is a real game-changer with respect to using it as a \u201creal computer\u201d replacement. Since that moment, I\u2019ve taken some time to tweak my widgets, settings and apps on my iPad and have been using it as my daily computer for a few days now. In fact, all the writing and updates I\u2019ve done for the site have all been done exclusively only the iPad. Special shoutout to the apps <a href=\"https:\/\/workingcopy.app\">Working Copy<\/a> and <a href=\"https:\/\/www.textasticapp.com\">Textastic<\/a>. I plan on revisiting <a href=\"https:\/\/shellsharks.com\/blogging-from-ipad\">this post<\/a> I wrote back in 2020 on blogging from my iPad with a new-and-improved version 2!<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>I\u2019ve been playing <a href=\"https:\/\/supermariobroswonder.nintendo.com\">Super Mario Wonder<\/a> (when I have the time) and it has been really delightful. Looking forward to some of the late-game content and levels!<\/li>\n  <li>We\u2019re less than a month away from the release of the remastered <a href=\"https:\/\/www.theverge.com\/2023\/6\/21\/23768360\/nintendo-switch-super-mario-rpg-remake\">Super Mario RPG<\/a>. I loved this game way back when and I actually did a play through of it somewhat recently during the early days of the pandemic. I\u2019m unsure if any of the gameplay or content will have been changed\/updated but regardless, I am excited to play through it once again =).<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt9140554\/\">Loki season 2<\/a> has been great, though I am behind right now.<\/li>\n  <li>I <em>loved<\/em> <a href=\"https:\/\/www.imdb.com\/title\/tt13622776\/\">Ahsoka<\/a> and can\u2019t wait for it to return for season 2!<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Spent some time in Vermont with the family recently, traveling to <a href=\"https:\/\/www.burlingtonvt.gov\">Burlington<\/a>, <a href=\"https:\/\/www.trappfamily.com\/\">Trapp Family Lodge<\/a> and the surrounding area of <a href=\"https:\/\/gostowe.com\">Stowe<\/a>. I now put maple syrup on <em>everything<\/em>\u2026<\/li>\n<\/ul>\n","pubDate":"Fri, 27 Oct 2023 09:03:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/10\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/10\/27\/log"},{"title":"Captain's Log, Entry: August 30, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve put A LOT into my site over the past month. Too much to even document here in the log. Some notable additions and changes include the hamburger menu, <a href=\"https:\/\/shellsharks.com\/roadmap\">Roadmap<\/a>, <a href=\"https:\/\/shellsharks.com\/uses\">Uses<\/a> page, <a href=\"https:\/\/ko-fi.com\/shellsharks\">Ko-fi<\/a> link, themes &amp; the <a href=\"https:\/\/shellsharks.com\/notebook\">notebook<\/a>. The <a href=\"https:\/\/shellsharks.com\/notebook\">Notebook<\/a> (where I feature my short-form notes, not the movie) has been a great addition to the site. I\u2019m using it a lot as a place to reverse-syndicate my social media posts. This way, if someone doesn\u2019t have a Mastodon account, they can still see what I am posting by simply subscribing to my alternate <a href=\"https:\/\/shellsharks.com\/feeds\/note-feed.xml\">notes RSS feed<\/a>!<\/p>\n\n<h6 id=\"security-community\">Security Community<\/h6>\n<ul>\n  <li>I\u2019m not sure what caused the surge, but this past Sunday it seems like a ton of new people joined or logged into dormant Mastodon accounts and decided to follow me. As a result, I catapulted beyond 1k followers. This of course means nothing, but for someone who has put a lot of thinking into social media and the social Fediverse at large, it\u2019s kinda neat to see.<\/li>\n<\/ul>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>I picked up a <a href=\"https:\/\/shellsharks.com\/notes\/2023\/08\/19\/framework-13-diy\">Framework Laptop and wrote about it here<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>\n    <p>There are a TON of great games coming out this year. How many I\u2019ll actually get to try I\u2019m not sure. In no particular order\u2026<\/p>\n\n    <ul>\n      <li><a href=\"https:\/\/baldursgate3.game\">Baldur\u2019s Gate 3<\/a><\/li>\n      <li><a href=\"https:\/\/bethesda.net\/en\/game\/starfield\">Starfield<\/a><\/li>\n      <li><a href=\"https:\/\/www.nintendo.com\/store\/products\/super-mario-rpg-switch\/\">Super Mario RPG 2023<\/a><\/li>\n      <li><a href=\"https:\/\/supermariobroswonder.nintendo.com\">Super Mario Bros. Wonder<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>2x Father stuff pretty much. Thank the heavens for paternity leave.<\/li>\n<\/ul>\n","pubDate":"Wed, 30 Aug 2023 21:29:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/08\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/08\/30\/log"},{"title":"Captain's Log, Entry: July 31, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve fallen in love with the <a href=\"https:\/\/shellsharks.com\/indieweb\">IndieWeb<\/a>. Also got me \u2018dat Mac Pro 2019.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>I\u2019ve crossed the <strong>4k<\/strong> threshold on my <a href=\"https:\/\/shellsharks.com\/infosec-blogs\">infosec blogs list<\/a>! That\u2019s a lot of infosec blogs =). Though in fairness I plan to comb through this list and delete dead sites &amp; move Medium sites to their own section (or remove them altogether).<\/li>\n  <li>I\u2019m now available in the <a href=\"https:\/\/fediverse.info\/explore\/people\">Fediverse People Directory<\/a>.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/sharkweek\/2023\">&gt;Shark Week 2023<\/a> actually happened! Despite my daughter being born smack-dab in the middle of that week.<\/li>\n  <li>I\u2019ve fallen in love with #<a href=\"https:\/\/indieweb.org\">IndieWeb<\/a> and have set out to <em>IndieWebbify<\/em> my site. I also have some ideas for building out a larger IndieWeb\/InfoSec community, so more to come on that!<\/li>\n  <li>I\u2019ve been very motivated to add long-wanted functionality to my site. With this motivation I\u2019ve implemented a \u201chamburger menu\u201d, 3 unique themes, a <em><a href=\"https:\/\/shellsharks.com\/roadmap\">roadmap<\/a><\/em> page, IndieWeb <a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>, an <a href=\"https:\/\/shellsharks.com\/indieweb.txt\">indieweb.txt<\/a> spec, a <a href=\"https:\/\/shellsharks.com\/uses\">uses<\/a> page and have plans for a lot more!<\/li>\n  <li>Speaking of \u201c<a href=\"https:\/\/shellsharks.com\/notebook\">notes<\/a>\u201d, I\u2019ll be writing a larger piece on what this is and how I plan on using it, but for now I\u2019ll just say that it\u2019s a great place for me to share short-form content as well as centralize my more interesting or notable social chatter.<\/li>\n  <li>I\u2019m now <em>findable<\/em> using <a href=\"https:\/\/tootfinder.ch\/index.php?query=shellsharks&amp;submitquery=Search\">Tootfinder<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"security-community\">Security Community<\/h6>\n<ul>\n  <li>Find all my points of presence <a href=\"https:\/\/shellsharks.com\/hello\">here<\/a>.<\/li>\n  <li>The <a href=\"https:\/\/infosec.pub\/c\/cybersecurity\">infosec.pub cybesecurity community<\/a> has surpassed the <a href=\"https:\/\/fedia.io\/m\/cybersecurity\">Fedia.io cybersecurity community<\/a>. In fact, there are nearly 1.5k subs in c\/cybersecurity as of today.<\/li>\n<\/ul>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>I finally pulled the trigger and purchased a <a href=\"https:\/\/support.apple.com\/kb\/SP797?locale=en_US\">2019 Mac Pro<\/a>. <em>Why invest in the dying breed of Intel macs you might ask<\/em>? Well, I still like to play around with Intel instruction set stuff, sprinkle in some nostalgia and good ol\u2019 fashioned Apple fan-boy-ism and you kinda get the reason why I did it. It\u2019s a good desktop-class machine that I can tinker with and use for the forseeable future. I will also likely get an M1-powered laptop at some point in the near future for work I want to do on the go (and to be exposed to modern Mac features).<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Diablo IV devs have continued to mistreat Sorcerer mains, <em>le sigh<\/em>. I still plan on getting back into it at some point when I finish my site dev sprint(s).<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Oh yeah, I also had a baby recently. Big life stuff!<\/li>\n<\/ul>\n","pubDate":"Mon, 31 Jul 2023 09:38:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/07\/31\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/07\/31\/log"},{"title":"Captain's Log, Entry: June 29, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>Big social begins to tank. If only I knew how much worse it would get\u2026 (<em>hi! it\u2019s shellsharks from the future!<\/em> \ud83d\udc4b)<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.reddit.com\/r\/GIAC\/comments\/14ikgy5\/comment\/jpgv7k0\/\">Shoutout in r\/GIAC<\/a><\/li>\n  <li><strong>&gt;Shark Week 2023<\/strong> lineup is now cemented, just need to finish writing.<\/li>\n  <li>I purchased a domain for a potential future <a href=\"https:\/\/joinmastodon.org\">Mastodon<\/a> instance, <strong>magical.network<\/strong>.<\/li>\n  <li>I\u2019ve joined the <a href=\"https:\/\/fediverse-webring-enthusiasts.glitch.me\/about.html\">Webring Enthusiasts of the Fediverse<\/a>, find <a href=\"https:\/\/fediverse-webring-enthusiasts.glitch.me\/profiles\/shellsharks_infosec.exchange\/index.html\">shellsharks here<\/a>!<\/li>\n  <li>Find me everywhere I exist <a href=\"https:\/\/shellsharks.com\/fediverse\">within the Fediverse here<\/a>! (I want to spruce this page up in time.)<\/li>\n<\/ul>\n\n<h6 id=\"security-community\">Security Community<\/h6>\n<ul>\n  <li>Say goodbye to <strong>mk3s#5507<\/strong>, I am <strong>shellsharks<\/strong> <a href=\"https:\/\/discord.com\/blog\/usernames\">on Discord now<\/a><\/li>\n  <li>I\u2019ve become a moderator at a few places, <a href=\"https:\/\/www.reddit.com\/r\/netsec\/comments\/13xbdhg\/welcome_new_moderators\/\">r\/netsec<\/a>, <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/\">r\/cybersecurity<\/a> and on <a href=\"https:\/\/infosec.pub\">infosec.pub<\/a>. In fact, learn more about the newly created <a href=\"https:\/\/shellsharks.com\/threadiversal-travel#infosecpub--fedia-cybersecurity-community\">cybersecurity communities<\/a> on both <a href=\"https:\/\/fedia.io\/\">Fedia<\/a> and <a href=\"https:\/\/infosec.pub\">infosec.pub<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>Apple\u2019s <a href=\"https:\/\/developer.apple.com\/wwdc23\/\">WWDC 2023<\/a> wrapped with some pretty interesting hardware announcements, <a href=\"https:\/\/www.apple.com\/apple-vision-pro\">Vision Pro<\/a>, <a href=\"https:\/\/www.apple.com\/newsroom\/2023\/06\/apple-introduces-the-15-inch-macbook-air\/\">15\u201d MacBook Air<\/a> and the <a href=\"https:\/\/www.apple.com\/newsroom\/2023\/06\/apple-unveils-new-mac-studio-and-brings-apple-silicon-to-mac-pro\/\">M-series Mac Pro<\/a>. After waiting for a while, I\u2019ve decided <em>not<\/em> to get the new Apple Silicon Mac Pro though.<\/li>\n  <li>\u2026but I <em>am<\/em> getting the (older) <a href=\"https:\/\/www.apple.com\/newsroom\/2019\/06\/apple-unveils-powerful-all-new-mac-pro-and-groundbreaking-pro-display-xdr\/\">2019 Mac Pro<\/a>! (<em>more to come on this\u2026<\/em>)<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been watching <a href=\"https:\/\/www.imdb.com\/title\/tt2861424\/\">Rick and Morty<\/a>, waiting for new seasons\u2026<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Completed the <a href=\"https:\/\/diablo4.blizzard.com\">Diablo IV<\/a> campaign but have taken a week off or so from playing. Need to get back in and dungeon crawl!<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Big Social appears to be in a death spiral. Twitter, Reddit, Discord, Meta - all going down the drain.<\/li>\n<\/ul>\n","pubDate":"Thu, 29 Jun 2023 10:02:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/06\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/06\/29\/log"},{"title":"Captain's Log, Entry: May 30, 2023","author":"mike@shellsharks.com (Mike)","description":"<p><a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/13lw505\/logo_contest_winner\/\">Shoutout<\/a> from <a href=\"https:\/\/www.reddit.com\/user\/fabledparable\/\">u\/fabledparable<\/a> related to the <a href=\"https:\/\/shellsharks.com\/shellsharks-logo#title\">Shellsharks logo<\/a>. <a href=\"https:\/\/shellsharks.com\/shellsharkweek\">&gt;Shark Week<\/a> 2023 lineup coming into view, just need to grind the content\u2026<\/p>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>Apple\u2019s <a href=\"https:\/\/developer.apple.com\/wwdc23\/\">WWDC 2023<\/a> is next week! There is supposedly going to be hardware announcements so I am pumped.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>The NBA playoffs have been pretty good this year. Round one was kinda a dud and so was the Lakers v. Nuggets series, but round two was wild and so was that ECF Boston v. Miami series. Going to be interesting to see if Miami can compete against the Nuggets in the final contest.<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.zelda.com\/tears-of-the-kingdom\/\">Tears of the Kingdom<\/a> looks pretty interesting and I am tempted to play. But I\u2019m mostly excited about the <a href=\"https:\/\/diablo4.blizzard.com\">Diablo 4 release<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>I\u2019m now on <a href=\"https:\/\/blueskyweb.xyz\">Bluesky<\/a> as <a href=\"https:\/\/bsky.app\/profile\/shellsharks.com\">@shellsharks.com<\/a>.<\/li>\n<\/ul>\n","pubDate":"Tue, 30 May 2023 09:27:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/05\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/05\/30\/log"},{"title":"Captain's Log, Entry: April 28, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>Love me a spinning top. Someone buy me an EarthRoamer!<\/p>\n\n<h6 id=\"tech\">Tech<\/h6>\n<ul>\n  <li>I <em>finally<\/em> maxed my <a href=\"https:\/\/feedly.com\/i\/pro\">Feedly Pro<\/a> account with <strong>2500<\/strong> RSS subs. I unsubscribed from about <em>200<\/em> unreachable feeds to give myself some breathing room. I also reached out to support to see if there was any way to increase my max feed count, even if that means moving to their <a href=\"https:\/\/feedly.com\/i\/pro?plan=enterprise\">Enterprise plan<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been slacking on keeping up with <a href=\"https:\/\/www.imdb.com\/title\/tt8111088\/\">The Mandalorian<\/a>. Need to get caught up.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li><em>Invested<\/em> in some gear from <a href=\"https:\/\/foreverspin.com\">Foreverspin<\/a>. I do love me a spinning top! My best spin time so far is <strong>2 min 12 sec<\/strong>.<\/li>\n  <li>I was sick for about a week and during that time completely lost my sense of taste. That was a very unsettling experience. Tested negative for flu and Covid so not really sure what was going on.<\/li>\n  <li>I\u2019ve got some fun travel plans coming up including Vermont, Dominican Republic, more in the Caribbean and maybe even Italy!<\/li>\n  <li>Quickly approaching June\/July which is baby #2 arrival window!<\/li>\n  <li>I <em>finally<\/em> got back out to <a href=\"https:\/\/www.dcr.virginia.gov\/state-parks\/sky-meadows\">Sky Meadows<\/a> for some hiking\/volunteering.<\/li>\n  <li>The <a href=\"https:\/\/earthroamer.com\/sx-explore\/\">EarthRoamer<\/a> looks awesome. Just short about a million dollars\u2026<\/li>\n  <li>Elon announced <a href=\"https:\/\/electrek.co\/2023\/04\/19\/elon-musk-announces-tesla-cybertruck-delivery-event\/\">CyberTruck delivery event hopefully by end of Q3 2023<\/a>. <em>OoOoOO<\/em>!<\/li>\n<\/ul>\n","pubDate":"Fri, 28 Apr 2023 11:00:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/04\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/04\/28\/log"},{"title":"Captain's Log, Entry: March 30, 2023","author":"mike@shellsharks.com (Mike)","description":"<p><em>Mostly a heads-down, tread water kind of month\u2026<\/em><\/p>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Still watching <strong>DBZ <a href=\"https:\/\/en.wikipedia.org\/wiki\/Dragon_Ball_Super\">Super<\/a><\/strong>!<\/li>\n  <li>Finished Season 1 of <a href=\"https:\/\/www.hbo.com\/the-last-of-us\">The Last of Us<\/a>. Great show, albeit a bit depressing.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt8111088\/\">The Mandalorian<\/a> is back, and still great.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt6710474\/\">Everything Everywhere All at Once<\/a> was wild and unique. I definitely got some <a href=\"https:\/\/www.youtube.com\/watch?v=6AOpomu9V6Q\">Matrix vibes<\/a> from it too.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt11813216\/\">The Banshees of Inisherin<\/a> was mostly just depressing. Some humorous moments though.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Bought some <a href=\"https:\/\/ketlmtn.com\/products\/ketl-mtn-vent-joggerish-lightweight-travel-pants\">Vent Lightweight Active Pants from KETL<\/a>. They feel great and are very versatile. Whether they can withstand wear and tear over time is my only concern as I have already noticed some de-threading\u2026<\/li>\n  <li>Owning a home unfortunately means fixing stuff that seems to break, <em>all the time<\/em>.<\/li>\n  <li>My family visit trip to Sumter and Charleston was <em>mostly<\/em> a success (<em>if you don\u2019t count the Flu-B<\/em>\u2026).<\/li>\n  <li>Paid like <strong>$8<\/strong> for some blueberries\u2026<em>crazy times we\u2019re livin\u2019 in<\/em>.<\/li>\n<\/ul>\n\n<h3 id=\"cool-security-team-names\">Cool Security Team Names<\/h3>\n\n<p>Here is a list of companies that have internal security teams with <em>cool<\/em> names\u2026<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/medium.com\/@knownsec404team\/about\">404 team<\/a>, Knownsec<\/li>\n  <li><a href=\"https:\/\/cybersecurity.att.com\/alien-labs\">Alien Labs<\/a>, AT&amp;T<\/li>\n  <li><a href=\"https:\/\/www.netscout.com\/asert\">ASERT<\/a>, NETSCOUT<\/li>\n  <li><a href=\"https:\/\/www.tarlogic.com\/blackarrow\/\">BlackArrow<\/a>, Tarlogic<\/li>\n  <li><a href=\"https:\/\/github.com\/tencentbladeteam\">Blade<\/a>, Tencent<\/li>\n  <li><a href=\"https:\/\/www.mandiant.com\/resources\/blog\/flare-vm-the-windows-malware\">FLARE<\/a>, Mandiant<\/li>\n  <li><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/security-insider\/meet-the-experts\/meet-the-experts-tracking-storm-0539-gift-card-fraud\">GHOST<\/a>, Microsoft<\/li>\n  <li><a href=\"https:\/\/www.kaspersky.com\/about\/team\/great\">GReAT<\/a>, Kaspersky<\/li>\n  <li><a href=\"https:\/\/www.recordedfuture.com\/research\/insikt-group\">Insikt<\/a>, Recorded Future<\/li>\n  <li><a href=\"https:\/\/keenlab.tencent.com\/en\/\">Keen Security Lab<\/a>, Tencent<\/li>\n  <li><a href=\"https:\/\/cybersecurity.att.com\/blogs\/labs-research\">LevelBlue<\/a>, AT&amp;T<\/li>\n  <li><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/author\/microsoft-offensive-research-security-engineering-team\/\">MORSE<\/a>, Microsoft<\/li>\n  <li><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/topic\/threat-intelligence\/\">MSTIC<\/a>, Microsoft<\/li>\n  <li><a href=\"https:\/\/www.aquasec.com\/research\/\">Nautilus<\/a>, Aqua<\/li>\n  <li><a href=\"https:\/\/www.yahooinc.com\/technology\/paranoids\">The Paranoids<\/a><\/li>\n  <li><a href=\"https:\/\/googleprojectzero.blogspot.com\">Project Zero<\/a>, Google<\/li>\n  <li>RAZOR, BindView<\/li>\n  <li><a href=\"https:\/\/rtx.meta.security\">Red Team X<\/a>, Meta<\/li>\n  <li><a href=\"https:\/\/orca.security\/about\/orca-research-pod\/\">Research Pod<\/a>, Orca<\/li>\n  <li><a href=\"https:\/\/www.humansecurity.com\/company\/satori-threat-intelligence\">Satori<\/a>, Human<\/li>\n  <li><a href=\"https:\/\/security.apple.com\">SEAR<\/a>, Apple<\/li>\n  <li><a href=\"https:\/\/techcommunity.microsoft.com\/discussions\/microsoftdefenderatp\/updates-by-d4iot-research--section-52\/3723556\">Section 52<\/a> (D4IoT Research), Microsoft<\/li>\n  <li>SHINE (<em>Security Hub for Innovation &amp; Efficiency<\/em>), Amazon<\/li>\n  <li><a href=\"https:\/\/blogs.blackberry.com\/en\/2015\/03\/we-are-spear-the-cylance-research-team\">SPEAR<\/a>, Cylance<\/li>\n  <li><a href=\"https:\/\/www.trustwave.com\/en-us\/resources\/blogs\/spiderlabs-blog\/\">SpiderLabs<\/a>, Trustwave<\/li>\n  <li><a href=\"https:\/\/www.tarlogic.com\">S.T.A\u00b2.R.S Team<\/a>, Tarlogic<\/li>\n  <li><a href=\"https:\/\/securityscorecard.com\/blog\/how-securityscorecard-strike-identifies-zero-days-in-the-wild\/\">STRIKE<\/a>, SecurityScorecard<\/li>\n  <li><a href=\"https:\/\/www.splunk.com\/en_us\/surge.html\">SURGe<\/a>, Splunk<\/li>\n  <li><a href=\"https:\/\/talosintelligence.com\">Talos<\/a>, Cisco<\/li>\n  <li><a href=\"https:\/\/claroty.com\/team82\">Team82<\/a>, Claroty<\/li>\n  <li><a href=\"https:\/\/www.zscaler.com\/threatlabz\/global-internet-threats-insights\">ThreatLabZ<\/a>, Zscaler<\/li>\n  <li><a href=\"https:\/\/www.qualys.com\/tru\/\">TRU<\/a>, Qualys<\/li>\n  <li><a href=\"https:\/\/unit42.paloaltonetworks.com\">Unit 42<\/a>, Palo Alto<\/li>\n  <li><a href=\"https:\/\/www.forescout.com\/research-labs\/\">Vedere Labs<\/a>, Forescout<\/li>\n  <li><a href=\"https:\/\/www.tripwire.com\/state-of-security\/tripwires-vulnerability-exposure-research-team-vert-what-you-need-know\">VERT<\/a>, Tripwire<\/li>\n  <li><a href=\"https:\/\/threatresearch.ext.hp.com\/blog\/\">Wolf<\/a>, HP<\/li>\n  <li><a href=\"https:\/\/www.ibm.com\/services\/offensive-security\">X-Force Red<\/a>, IBM<\/li>\n  <li>X-Force XOR, IBM<\/li>\n  <li><a href=\"https:\/\/www.sophos.com\/en-us\/x-ops\">X-Ops<\/a>, Sophos<\/li>\n<\/ul>\n\n","pubDate":"Thu, 30 Mar 2023 11:00:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2023\/03\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/03\/30\/log"},{"title":"Captain's Log, Entry: February 28, 2023","author":"mike@shellsharks.com (Mike)","description":"<p><em>Slow month<\/em>\u2026<\/p>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>Nothing. <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">OSWE<\/a> is somewhat delayed, <em>again<\/em>\u2026<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Finished <a href=\"https:\/\/watchdbz.xyz\">Dragon Ball Z<\/a>, onto <strong><a href=\"https:\/\/en.wikipedia.org\/wiki\/Dragon_Ball_Super\">Super<\/a><\/strong>!<\/li>\n  <li><a href=\"https:\/\/www.hbo.com\/the-last-of-us\">The Last of Us<\/a> is pretty good, albeit a bit depressing.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt8111088\/\">The Mandalorian<\/a> Season 3 tomorrow! So stoked.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Officially started as a mentor for <a href=\"https:\/\/onehop.jhu.edu\/hub\/mentoring\/home-v3\">JHU\u2019s Alumni Mentoring Program<\/a>.<\/li>\n  <li>lol, <a href=\"https:\/\/www.spaghettify.dev\">Spaghettify<\/a><\/li>\n<\/ul>\n","pubDate":"Tue, 28 Feb 2023 09:15:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2023\/02\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/02\/28\/log"},{"title":"Captain's Log, Entry: January 28, 2023","author":"mike@shellsharks.com (Mike)","description":"<p>Taking a break from the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a> while I work through WEB-300. If I <em>do<\/em> end up recording any shows, they will be OSWE-related.<\/p>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">WEB-300\/AWAE\/OSWE<\/a> quest is underway\u2026<\/li>\n  <li>I vTA\u2019ed <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/ics-visibility-detection-response\/\">ICS515<\/a> for <em>SANS Security East 2023<\/em>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Finished <a href=\"https:\/\/watchdbz.xyz\">Dragon Ball<\/a>, onto <strong><a href=\"http:\/\/www.dragonballz.com\">Z<\/a><\/strong>!<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt12708542\/episodes?season=2\">Bad Batch Season 2<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Went to <a href=\"https:\/\/www.clubmed.us\/r\/punta-cana\/y\">Club Med<\/a> in the Dominican Republic!<\/li>\n  <li>Back from the beach, time to get back to the gym and begin bulking phase.<\/li>\n  <li><a href=\"https:\/\/www.forbes.com\/sites\/jackkelly\/2022\/12\/08\/layoff-contagion-spreads-from-the-tech-sector-to-everywhere-else\/?sh=157264ad2fe4\">Layoffs are everywhere<\/a>\u2026scary times!<\/li>\n<\/ul>\n","pubDate":"Sat, 28 Jan 2023 19:44:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2023\/01\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2023\/01\/28\/log"},{"title":"Captain's Log, Entry: December 30, 2022","author":"mike@shellsharks.com (Mike)","description":"<p><a href=\"#see-ya-2022-hello-2023\">See Ya 2022, Hello 2023!<\/a><\/p>\n\n<h6 id=\"news\">News<\/h6>\n<ul>\n  <li>I\u2019ve chosen <a href=\"https:\/\/code.visualstudio.com\">Visual Studio Code<\/a> as my new general-purpose IDE + blog\/markdown editor.<\/li>\n  <li>I passed my <a href=\"https:\/\/www.giac.org\/certifications\/security-leadership-gslc\/\">GIAC GSLC<\/a> exam with a <strong>94%<\/strong>. <a href=\"https:\/\/shellsharks.com\/training-retrospective#mgt512-security-leadership-essentials-for-managers-gslc-sans\">Review<\/a> is up as well!<\/li>\n  <li>I\u2019ve added myself to <a href=\"https:\/\/github.com\/cipher387\/OSINT-and-Cybersecurity-accounts-in-Mastodon\">this list of Cybersecurity Mastodon accounts<\/a>. Thanks to <a href=\"https:\/\/infosec.exchange\/@cyb_detective\/109394014374645609\">@cyb_detective@infosec.exchange<\/a>!<\/li>\n  <li>I\u2019m in the <a href=\"https:\/\/www.reddit.com\/user\/mk3s\/\">top 1% of karma earners<\/a> on Reddit this year. <em>Woo!<\/em><\/li>\n  <li>Surpassed 3500 <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec blogs<\/a>.<\/li>\n  <li><a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/z8t5dt\/update_on_the_free_cyber_security_search_engine\/\">This post<\/a> in <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/\">r\/cybersecurity<\/a> references two shellsharks resources (<a href=\"https:\/\/hero.page\/cybersecurity\/infosec-tools\">Infosec Tools<\/a> &amp; <a href=\"https:\/\/hero.page\/cybersecurity\/exploits-vulnerability-catalogs\">Designer Vulnerabilities<\/a>). <em>Pretty cool<\/em>!<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>Two new shows up! <a href=\"https:\/\/shellsharks.podbean.com\/e\/privacy-chat-w-dan-frechtling\/\">Dan Frechtling<\/a> &amp; <a href=\"https:\/\/shellsharks.podbean.com\/e\/mastodon-cyber-success-w-rebootkid\/\">@rebootkid<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I\u2019ve officially signed up for OffSec\u2019s <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">WEB-300\/AWAE\/OSWE<\/a> course via the <a href=\"https:\/\/www.offensive-security.com\/learn\/\">Learn One<\/a> bundle.<\/li>\n  <li><strong>17<\/strong> <a href=\"https:\/\/www.sans.org\">SANS<\/a> certs\u2026 Think I\u2019ll shoot for <em>20<\/em>. Maybe I can make the <a href=\"https:\/\/www.giac.org\/get-certified\/giac-security-expert\/\">GSE<\/a> the last one!<\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.apple.com\/macos\/ventura\/\">Ventura<\/a> is out, but my old <a href=\"https:\/\/support.apple.com\/kb\/sp697?locale=en_US\">Mac Pro<\/a> doesn\u2019t support it. So I\u2019m still considering what my next main computer will be. Likely something sporting <a href=\"https:\/\/isapplesiliconready.com\">Apple Silicon<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been rewatching <a href=\"https:\/\/watchdbz.xyz\">Dragon Ball<\/a>. Plenty silly but still so good.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/www.apple.com\/apple-watch-ultra\/\">Apple Watch Ultra<\/a> <em>Ocean band<\/em> is pretty great!<\/li>\n  <li>Santa brought me a rice cooker. <em>Game changer<\/em>.<\/li>\n  <li>Been pretty consistent lifting and going to the gym since October, planning on keeping it up in the new year!<\/li>\n<\/ul>\n\n<hr \/>\n\n<h2 id=\"see-ya-2022-hello-2023\">See Ya 2022, Hello 2023!<\/h2>\n\n<h3 id=\"2022-highlights\">2022 Highlights<\/h3>\n\n<ul>\n  <li>Podcast Episodes: <strong>11<\/strong><\/li>\n  <li>Time Spent Shellsharkin\u2019: <strong>405<\/strong> hours \/ <strong>16.9<\/strong> days<\/li>\n  <li>SANS Assignments (as vTA\/Moderator): <strong>5<\/strong><\/li>\n  <li>Certifications: <strong>3<\/strong> (GOSI, GWEB, GSLC)<\/li>\n  <li>Fitness: Achieved great consistency lifting and going to the gym. Reduced my body fat percentage from 20%-16%.<\/li>\n  <li>Travel: Montreal, Deadwood (SD), Spain, Andorra, France!<\/li>\n<\/ul>\n\n<h3 id=\"looking-forward-to-2023\">Looking Forward to 2023<\/h3>\n\n<ul>\n  <li>Looking forward to continuing the lifting\/gym\/eating better journey.<\/li>\n  <li>Focusing on achieving OSWE &amp; honing appsec &amp; coding skills.<\/li>\n  <li>Baby <em>girl<\/em> on the way!<\/li>\n  <li>Continue working on the blog, the podcast and other professional projects!<\/li>\n<\/ul>\n","pubDate":"Fri, 30 Dec 2022 10:41:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2022\/12\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/12\/30\/log"},{"title":"Captain's Log, Entry: November 27, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019m on <a href=\"https:\/\/joinmastodon.org\">Mastodon<\/a>! Find me <a href=\"https:\/\/infosec.exchange\/@shellsharks\">here<\/a> (<em>infosec<\/em>) and <a href=\"https:\/\/mastodon.social\/@sass\">here<\/a> (<em>personal<\/em>)! My <a href=\"https:\/\/shellsharks.com\/mastodon\">Mastodon <em>tootorial<\/em><\/a> has also been published. I honestly don\u2019t care about \u201cfollower\u201d count on social media, but as an observation, I was able to surpass my follower count from Twitter in a week on Mastodon. I\u2019m considering <a href=\"https:\/\/shellsharks.com\/mastodon#hosting-a-mastodon-instance\">standing up my own Mastodon instance<\/a> @ <strong>shellsharks.social<\/strong>. More to come here\u2026<\/p>\n\n<ul>\n  <li><a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/yhuobj\/comment\/iurholg\/?%2524deep_link=true&amp;correlation_id=4f1133fd-fcbe-4a3d-9612-74b47d0a2976&amp;ref=email_username_mention&amp;ref_campaign=email_username_mention&amp;\">My site was plugged<\/a> on <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/\">r\/cybersecurity<\/a>, woo!<\/li>\n  <li>I\u2019ve revamped my <a href=\"https:\/\/shellsharks.com\/disclaimer\">disclaimer<\/a> page with an added <a href=\"https:\/\/creativecommons.org\/licenses\/by-sa\/4.0\/\">Creative Commons license<\/a>.<\/li>\n  <li><a href=\"https:\/\/github.blog\/2022-06-08-sunsetting-atom\/\">Atom is going away<\/a>, as such, I\u2019ll probably need a new IDE for editing the site\/writing posts. I\u2019m currently between <a href=\"https:\/\/code.visualstudio.com\">Visual Studio Code<\/a> or <a href=\"https:\/\/nova.app\">Nova<\/a> as the successor.<\/li>\n  <li>I passed my <a href=\"https:\/\/www.giac.org\/certifications\/open-source-intelligence-gosi\/\">GIAC GOSI<\/a> exam with a 90%. <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec487-open-source-intelligence-osint-gathering-and-analysis-gosi-sans\">Review<\/a> is up!<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> made a <a href=\"https:\/\/cyberexperts.com\/top-50-cybersecurity-podcasts-for-2022\/\">top 50 Cybersecurity podcasts<\/a> list!<\/li>\n  <li>Three new shows up w\/ <a href=\"https:\/\/shellsharks.podbean.com\/e\/vuln-research-exploit-dev-w-voidsec\/\">VoidSec<\/a>, <a href=\"https:\/\/shellsharks.podbean.com\/e\/threat-hunting-w-shahar-vaknin-of-huntersai\/\">Shahar<\/a> &amp; <a href=\"https:\/\/shellsharks.podbean.com\/e\/interview-w-security-engineer-eva-georgieva\/\">Eva<\/a><\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I\u2019ve completed <a href=\"https:\/\/www.giac.org\/certifications\/open-source-intelligence-gosi\/\">GOSI<\/a> and am now studying for <a href=\"https:\/\/www.giac.org\/certifications\/certified-web-application-defender-gweb\/\">GWEB<\/a>. Once done, I\u2019ll move to <a href=\"https:\/\/www.giac.org\/certifications\/security-leadership-gslc\/\">GSLC<\/a>. Why am I prioritizing these certs? Not really sure. Maybe i\u2019ll stop at <strong>20<\/strong>\u2026<\/li>\n  <li>I say this every year, but thinking I\u2019ll spend some time on <a href=\"https:\/\/www.sans.org\/mlp\/holiday-hack-challenge\/\">Holiday Hack<\/a> this year and do some form of write-up.<\/li>\n  <li>Beyond the silly certs, I\u2019ve been putting some thought into what I want to learn and where I want to go technically\/professionally. I\u2019ve identified some domains, trainings and books that I believe can help me with this progression. At a high-level, it involves a lot of coding, cloud, containers and general appsec.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt9253284\/\">Andor<\/a> Season 1 was just incredible.<\/li>\n  <li>I watched <a href=\"https:\/\/www.jurassicworld.com\">Jurassic World Dominion<\/a> and despite the reviews I saw, thoroughly enjoyed it.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Twitter is <strong>ded<\/strong>.<\/li>\n  <li>Finally got back to my jet-setting ways with a trip to Barcelona, Andorra and Toulouse.<\/li>\n<\/ul>\n\n<h5 id=\"what-is-my-sacrifice\">What is my sacrifice?<\/h5>\n\n<blockquote>\n  <p>Calm. Kindness, kinship. Love. I\u2019ve given up all chance at inner peace, I\u2019ve made my mind a sunless space. I share my dreams with ghosts. I wake up every day to an equation I wrote 15 years ago from which there\u2019s only one conclusion: I\u2019m damned for what I do. My anger, my ego, my unwillingness to yield, my eagerness to fight, they\u2019ve set me on a path from which there is no escape. I yearned to be a savior against injustice without contemplating the cost, and by the time I looked down, there was no longer any ground beneath my feet.<\/p>\n\n  <p>What is\u2026 what is my sacrifice? I\u2019m condemned to use the tools of my enemy to defeat them. I burn my decency for someone else\u2019s future. I burn my life, to make a sunrise that I know I\u2019ll never see. No, the ego that started this fight will never have a mirror, or an audience, or the light of gratitude. So what do I sacrifice?<\/p>\n\n  <p><a href=\"https:\/\/www.youtube.com\/watch?v=GQMDmb3mOY8\">Everything<\/a>.<\/p>\n<\/blockquote>\n\n","pubDate":"Sun, 27 Nov 2022 12:58:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2022\/11\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/11\/27\/log"},{"title":"Captain's Log, Entry: October 25, 2022","author":"mike@shellsharks.com (Mike)","description":"<p><strong>300+<\/strong> <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities\">named vulnerabilities<\/a>! (<em>and counting<\/em>\u2026)<\/p>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>Recently met the creator of <a href=\"https:\/\/www.linkedin.com\/posts\/eva-georgieva-b84898133_cybersecurity-activity-6958399255552122881-Gn8A\/?utm_source=linkedin_share&amp;utm_medium=member_desktop_web\">hackintocybersec<\/a>, <a href=\"https:\/\/www.linkedin.com\/in\/eva-georgieva-b84898133?miniProfileUrn=urn%3Ali%3Afs_miniProfile%3AACoAACCzZZQBXEAo_ytE9v2wI_TwZBx06xcmsD0&amp;lipi=urn%3Ali%3Apage%3Ad_flagship3_detail_base%3BzRr0m3wjQnSigHeT5VBJfw%3D%3D\">Eva<\/a> who has partnered with <a href=\"https:\/\/www.linkedin.com\/company\/ollmoo\/\">OLLMOO<\/a> to teach cybersecurity and connect with women professionals across the world.<\/li>\n  <li>In fact, I participated in the <a href=\"https:\/\/www.linkedin.com\/feed\/update\/urn:li:activity:6988173795408654338\/\">first fireside chat<\/a> as part of that initiative, speaking with Eva about <a href=\"https:\/\/shellsharks.com\/training-retrospective#my-education-journey\">my experience<\/a> and sharing <a href=\"https:\/\/shellsharks.com\/getting-into-information-security#title\">advice<\/a> for getting into the cybersecurity field.<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li><em>Wayyy<\/em> behind on editing. Will likely be delayed until mid-November at this rate\u2026<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>Looking at challenging\/taking a few <a href=\"https:\/\/www.sans.org\">SANS<\/a> exams here in the near future - <a href=\"https:\/\/www.giac.org\/certifications\/security-leadership-gslc\/\">GSLC<\/a>, <a href=\"https:\/\/www.giac.org\/certifications\/certified-web-application-defender-gweb\/\">GWEB<\/a> and <a href=\"https:\/\/www.giac.org\/certifications\/open-source-intelligence-gosi\/\">GOSI<\/a>.<\/li>\n  <li>Was introduced to <a href=\"https:\/\/blog.blacklanternsecurity.com\/p\/bbot\">BBOT<\/a> at <a href=\"https:\/\/wildwesthackinfest.com\/deadwood\/\">WWHF<\/a>. Cool tool!<\/li>\n  <li>Bought a bunch of new <a href=\"https:\/\/shellsharks.com\/cybersecurity-library\">cybersecurity books<\/a>.<\/li>\n  <li>Interestingly enough, I\u2019ve qualified for the <strong>2022<\/strong> SANS <a href=\"https:\/\/www.sans.org\/cyber-ranges\/Tournament-of-Champions\/\">NetWars Tournament of Champions<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt9253284\/\">Andor<\/a> season 1 was amazing.<\/li>\n  <li><a href=\"https:\/\/www.hbo.com\/house-of-the-dragon\">House of the Dragon<\/a> season 1 was also very good. Personally, I think it is as good as the original series.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt7631058\/\">The Rings of Power<\/a> definitely blew my mind. Can\u2019t wait for what\u2019s next.<\/li>\n  <li>Working my way through <a href=\"https:\/\/www.imdb.com\/title\/tt5834204\/\">The Handmaid\u2019s Tale<\/a> <em>season 5<\/em>.<\/li>\n  <li>Really enjoyed <a href=\"https:\/\/www.imdb.com\/title\/tt10648342\/\">Thor: Love &amp; Thunder<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Been hitting the gym and trying to eat better. Doing pretty good so far!<\/li>\n<\/ul>\n","pubDate":"Tue, 25 Oct 2022 20:12:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/10\/25\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/10\/25\/log"},{"title":"Captain's Log, Entry: October 2, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>Recorded <strong>3<\/strong> new <a href=\"https:\/\/shellsharks.com\/podcast\">episodes<\/a>, I just need to edit and post.<\/p>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li><em>Still<\/em> need to prep for <a href=\"https:\/\/www.giac.org\/certifications\/security-leadership-gslc\/\">GSLC<\/a>\u2026<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>No new Mac hardware announced at the <a href=\"https:\/\/www.apple.com\/newsroom\/2022\/09\/apple-debuts-iphone-14-pro-and-iphone-14-pro-max\/\">September Apple event<\/a> <em>but<\/em> I did pick up the new <a href=\"https:\/\/www.apple.com\/iphone-14-pro\/\">iPhone 14 Pro Max<\/a> (that <a href=\"https:\/\/support.apple.com\/guide\/iphone\/view-activites-in-the-dynamic-island-iph28f50d10d\/ios\">Dynamic Island<\/a> huh?!). I also upgraded to the all new <a href=\"https:\/\/www.apple.com\/apple-watch-ultra\/\">Apple Watch Ultra<\/a> which I am loving so far. A more in-depth review of the <strong>Ultra<\/strong> is something I am working on\u2026<\/li>\n  <li>I ended up purchasing the <a href=\"https:\/\/www.amazon.com\/dp\/B00SC80YLM?psc=1&amp;ref=ppx_yo2ov_dt_b_product_details\">Audio-Technica ATH-M70X<\/a> headphones and they\u2019re pretty good!<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Lot\u2019s of great TV on right now - <a href=\"https:\/\/www.imdb.com\/title\/tt9253284\/\">Andor<\/a>, <a href=\"https:\/\/www.hbo.com\/house-of-the-dragon\">House of the Dragon<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt7631058\/\">The Rings of Power<\/a> and <a href=\"https:\/\/www.imdb.com\/title\/tt5834204\/\">The Handmaid\u2019s Tale<\/a> (<em>Season 5<\/em>) to name a few.<\/li>\n  <li>Might need to check <a href=\"https:\/\/www.imdb.com\/title\/tt14921986\/\">this out<\/a> too\u2026<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Heading to <a href=\"https:\/\/wildwesthackinfest.com\/deadwood\/\">WWHF<\/a> in Deadwood, SD in a week. <em>Woo!<\/em><\/li>\n  <li>Lot\u2019s of travel planned the next two months actually, going to be busy!<\/li>\n<\/ul>\n","pubDate":"Sun, 02 Oct 2022 14:27:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/10\/02\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/10\/02\/log"},{"title":"Captain's Log, Entry: August 27, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>Added: v2 of the Threat Modeling guide, the Change Log, a \u201cStatboard\u201d, another podcast episode. Lots of other stuff happenin\u2019 this month too.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>Dropped <em>v2<\/em> of my <a href=\"https:\/\/shellsharks.com\/threat-modeling\">threat modeling<\/a> guide with <strong>6<\/strong> new methodologies:\n    <ul>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#data-centric-system-threat-modeling-nist-sp-800-154\">NIST SP 800-154<\/a><\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#owasp-threat-modeling-process\">OWASP TMP<\/a><\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#tara\">TARA<\/a><\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#iddilatc\">IDDIL\/ATC<\/a><\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#hybrid-threat-modeling-method-htmm\">hTMM<\/a><\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling#quantitative-threat-modeling-qtmm\">QTMM<\/a><\/li>\n    <\/ul>\n  <\/li>\n  <li><a href=\"https:\/\/reddit.com\/r\/cybersecurity\/comments\/wd3ics\/_\/iih9ygb\/?context=1\">Someone referenced<\/a> by <a href=\"https:\/\/shellsharks.com\/threat-modeling\">threat modeling<\/a> guide. <em>Dope<\/em>.<\/li>\n  <li>I\u2019ve introduced a (curated) \u201c<strong><a href=\"https:\/\/shellsharks.com\/changelog\">change log<\/a><\/strong>\u201d where I list out deltas of site content updates. Moving forward, changes to the site will mostly appear <em>there<\/em> instead of in the <a href=\"https:\/\/shellsharks.com\/captains-log\/\">Captains Log<\/a>.<\/li>\n  <li>I\u2019ve also developed a \u201c<strong><a href=\"https:\/\/shellsharks.com\/statboard\">statboard<\/a><\/strong>\u201d which presents a number of interesting data points about the site.<\/li>\n  <li>A Reddit <a href=\"https:\/\/www.reddit.com\/user\/NetSecTech\/\">user<\/a> in <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/\">r\/cybersecurity<\/a> asked about <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wwkfzp\/how_do_you_boost_your_professional_creds\/\">boosting professional credibility<\/a> so <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wwkfzp\/comment\/ilmpjbm\/?utm_source=share&amp;utm_medium=web2x&amp;context=3\">I responded<\/a> and also created my own resource for it - <em><a href=\"https:\/\/shellsharks.com\/cyber-clout#title\">Boosting Your Cyber Clout<\/a><\/em>.<\/li>\n  <li>I wrote up a short piece on <a href=\"https:\/\/shellsharks.com\/dynamize-jekyll#title\">\u201cdynamizing\u201d Jekyll<\/a>, based on what I learned creating my site <a href=\"https:\/\/shellsharks.com\/statboard\">statboard<\/a>.<\/li>\n  <li>Dropped a <em><a href=\"https:\/\/shellsharks.com\/training-retrospective#updated-gcpn-review-8272022\">re-review<\/a><\/em> of <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/cloud-penetration-testing\/\">SEC588<\/a> as I re-took the course as a vTA. <em>Spoiler<\/em>: I liked the course a lot more the second time around.<\/li>\n  <li>Someone on Reddit <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wybrgy\/knowledge_transfer_vuln_managementincident\/\">asked about working in VM<\/a> so I <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wybrgy\/comment\/ilvr6ct\/?utm_source=share&amp;utm_medium=web2x&amp;context=3\">linked out to my VM guide<\/a>. <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wyhxpd\/whats_it_like_working_in_vulnerability_management\/\">In a separate thread<\/a>, someone asked more specifically about day-to-day responsibilities where <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/wyhxpd\/comment\/ilx5ha0\/?utm_source=share&amp;utm_medium=web2x&amp;context=3\">I also engaged<\/a> =).<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>Episode <a href=\"https:\/\/shellsharks.podbean.com\/e\/hacker-profile-kevin-borders-nsa-red-team-to-software-entrepreneur\/\">12<\/a> is <strong>live<\/strong> and 13 should be up <em>soon<\/em>! My goal is to get back to (an overall average of) <strong>1<\/strong> episode a month (tracking this via my <a href=\"https:\/\/shellsharks.com\/statboard\">statboard<\/a>)<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I worked as a <strong>vTA<\/strong> for SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/cloud-penetration-testing\/\">SEC588: Cloud Penetration Testing<\/a> at <em>SANS Virginia Beach 2022 (Live Online)<\/em>. This run was taught by the course author (<a href=\"https:\/\/www.sans.org\/profiles\/moses-frost\/\">Moses Frost<\/a>) who has definitely made some significant updates to the course <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec588-cloud-penetration-testing-gcpn-sans\">since I took it last<\/a>.<\/li>\n  <li>I also served as an online <a href=\"https:\/\/www.sans.org\/work-study-program\/\">Moderator<\/a> for <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/security-leadership-essentials-managers\/\">SANS MGT512: Security Leadership Essentials for Managers<\/a> and was fortunate enough to win the <a href=\"https:\/\/www.sans.org\/blog\/sans-challenge-coins-the-ultimate-recognition-to-elite-cybersecurity-professionals\/\">challenge coin<\/a> for the course!<\/li>\n  <li>Still need to prep for and take the <a href=\"https:\/\/www.giac.org\/certifications\/security-leadership-gslc\/\">GIAC GSLC<\/a> certification exam. A September task at this point\u2026<\/li>\n  <li>Playing around with <a href=\"https:\/\/github.com\/features\/actions\">Git Actions<\/a> for some stuff for the site.<\/li>\n  <li>SANS has apparently killed its advanced web application penetration testing course, <a href=\"https:\/\/web.archive.org\/web\/20210325012759\/https:\/\/www.sans.org\/ondemand\/course\/advanced-web-app-penetration-testing-ethical-hacking\">SEC642<\/a>. <a href=\"https:\/\/www.sans.org\/profiles\/moses-frost\/\">Moses Frost<\/a> believed it was due to not having a certification. <a href=\"https:\/\/web.archive.org\">Wayback Machine<\/a> pegs the last crawl at <em>March 25, 2021<\/em>. <strong>RIP<\/strong>, I always hoped for a cert for <a href=\"https:\/\/shellsharks.com\/training-retrospective#sans-sec642-advanced-web-app-penetration-testing\">that class<\/a>.<\/li>\n  <li>Apparently an advanced cloud pentesting course, <em>SEC688<\/em> is coming out in the near future (<em>exciting!<\/em>). Couple that with the flight of <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/red-team-operations-adversary-emulation\/\">SEC565<\/a> (w\/ that <a href=\"https:\/\/twitter.com\/pwnEIP\/status\/1563191254372204545?ref_src=twsrc%5Egoogle%7Ctwcamp%5Eserp%7Ctwgr%5Etweet\">druel-worth challenge coin<\/a> - <strong>omg<\/strong>) and many other <a href=\"https:\/\/www.sans.org\/mlp\/new-sans-courses\/\">new advanced SANS courses<\/a>, I feel like I\u2019m going to get dragged right back into my old <em>SANS-ey<\/em> ways\u2026<\/li>\n  <li>I took my first <a href=\"https:\/\/www.sans.org\">SANS<\/a> course course was in 2016 (<a href=\"https:\/\/shellsharks.com\/training-retrospective#sec560-network-penetration-testing-and-ethical-hacking-gpen-sans\">SEC560<\/a>). Thought it was interesting to see the book aesthetic evolution over time.<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2022\/sans-books.jpeg\" alt=\"SANS Course Book Aesthetics\" \/><\/p>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.apple.com\">Apple<\/a> event <a href=\"https:\/\/www.macrumors.com\/2022\/08\/17\/apple-to-hold-iphone-14-event-on-september-7\/\">rumored for 9\/7<\/a>. I\u2019m hoping for new phones (<em>duh<\/em>), new watch and a new <strong>Mac Pro<\/strong>!<\/li>\n  <li><a href=\"https:\/\/hak5.org\/\">Hak5<\/a> has the best hacker christmas gifts - <a href=\"https:\/\/hak5.org\/products\/wifi-coconut\">WiFi Coconut<\/a>.<\/li>\n  <li>Some day I need to pick up some studio monitors for my <a href=\"https:\/\/shellsharks.com\/desk-setup-2021\">desk setup<\/a>. Been considering the <a href=\"https:\/\/usa.yamaha.com\/products\/proaudio\/speakers\/hs_series\/index.html\">Yamaha HS Series<\/a>.<\/li>\n  <li>Realized I need some closed-back monitor headphones for my <a href=\"https:\/\/shellsharks.com\/podcast\">podcasting<\/a> setup to reduce sound bleed while recording. Thinking of picking up the Audio-Technica <a href=\"https:\/\/www.audio-technica.com\/en-us\/ath-m50x\">ATH-M50X<\/a> or <a href=\"https:\/\/www.audio-technica.com\/en-us\/ath-m70x\">M70X<\/a>.<\/li>\n  <li>Been considering some other cool audio-engineering gear to <em>up<\/em> the setup\u2026 <a href=\"https:\/\/monogramcc.com\/shop\/\">customizable console gear<\/a> &amp; <a href=\"https:\/\/rode.com\/en\/interfaces-and-mixers\/rodecaster-series\/rodecaster-pro\">RODECaster Pro<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I really enjoyed the new <em>Doctor Strange<\/em> movie, <a href=\"https:\/\/www.imdb.com\/title\/tt9419884\/\">Multiverse of Madness<\/a>.<\/li>\n  <li>Finished binging <a href=\"https:\/\/www.imdb.com\/title\/tt2467372\/\">Brooklyn Nine-Nine<\/a>.<\/li>\n  <li>Pumped for the upcoming <a href=\"https:\/\/www.starwars.com\/films\/rogue-one\">Rogue One<\/a> prequel, <a href=\"https:\/\/www.imdb.com\/title\/tt9253284\/\">Andor<\/a>.<\/li>\n  <li><a href=\"https:\/\/www.hbo.com\/house-of-the-dragon\">House of the Dragon<\/a>! Awesome so far.<\/li>\n  <li>Got into some DC universe too\u2026 <a href=\"https:\/\/www.imdb.com\/title\/tt0770828\/\">Man of Steel<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt18689424\/\">Batman vs Superman: Dawn of Justice - Ultimate Edition<\/a> &amp; <a href=\"https:\/\/www.imdb.com\/title\/tt12361974\/\">Zack Snyder\u2019s Justice League<\/a>.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt2463208\/\">The Adam Project<\/a> was not only a great Sci-Fi movie but also a real heart-tugger as a father\u2026<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Bought some cool water bottles from <a href=\"https:\/\/www.hydroflask.com\">Hydro Flask<\/a>.<\/li>\n  <li>Picked up what must have been an <a href=\"https:\/\/www.cdc.gov\/adenovirus\/index.html\">adenovirus<\/a> which was terrible.<\/li>\n  <li>Groomed my <a href=\"https:\/\/getpocket.com\/\">read-it-later<\/a> archive from 1200+ articles down to ~450.<\/li>\n  <li>Officially moved to <a href=\"https:\/\/obsidian.md\">Obsidian<\/a> for my main note-taking needs. See ya <a href=\"https:\/\/www.notion.so\">Notion<\/a>!<\/li>\n<\/ul>\n","pubDate":"Sat, 27 Aug 2022 11:52:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/08\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/08\/27\/log"},{"title":"Captain's Log, Entry: July 31, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>What are my biggest posts? Podcasting is hard. <em>Meadow meets the sky\u2026<\/em><\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/sharkweek\/2022\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/sharkweek.png\" alt=\"&gt;shark week\" style=\"display:inline; height:1em;\" \/><\/a> 2022!<\/li>\n  <li>I found this <a href=\"https:\/\/www.marketscreener.com\/quote\/stock\/ADYEN-N-V-44211922\/news\/Inside-Adyen-The-Log4j-Saga-37397397\/\">random reference<\/a> to my site while doing some deep Google hunting. <em>Weird\u2026<\/em><\/li>\n  <li>The <em>Tesla Shark<\/em> is live!<\/li>\n<\/ul>\n\n<p><a href=\"https:\/\/shellsharks.com\/tesla\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/2021\/TSLAshark_SolidWindows.png\" width=\"250px\" \/><\/a><\/p>\n\n<ul>\n  <li>This years <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/w8irk6\/infosec_blogger_podcaster_ama\/\">AMA<\/a> was not a <em>rousing success<\/em>, though I did get some OK engagement. Oh well, <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/\">that sub<\/a> has been on the downslide for a little while now unfortunately.<\/li>\n  <li>I hosted a <a href=\"https:\/\/twitter.com\/shellsharks\/status\/1553167448173690880?s=20&amp;t=nSDnFnx9_X2DLO712zGiEQ\">Twitter Space<\/a> for the first time. Was pretty easy to figure out. Interesting too that people <em>without<\/em> <a href=\"https:\/\/twitter.com\">Twitter<\/a> accounts can tune in.<\/li>\n  <li>After posting my <a href=\"https:\/\/shellsharks.com\/threat-modeling\">big-book on threat modeling<\/a>, I was curious what other <em>XL<\/em> (<em>&gt;10k words<\/em>) posts I had published over the years. Here\u2019s the list\u2026\n    <ul>\n      <li><a href=\"https:\/\/shellsharks.com\/training-retrospective\">A 5 Year Infosec Education Retrospective<\/a> (~<strong>19k<\/strong>, <em>and growing\u2026<\/em>)<\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/vm-bootcamp\">Vulnerability Management Bootcamp<\/a> (~<strong>15k<\/strong>)<\/li>\n      <li><a href=\"https:\/\/shellsharks.com\/threat-modeling\">The Enchiridion of Impetus Exemplar<\/a> (~<strong>10k<\/strong>)\n        <ul>\n          <li><strong>Update<\/strong>: With the drop of <em>v2<\/em> of my Threat Modeling guide, this post is now over <strong>17k<\/strong> words!<\/li>\n        <\/ul>\n      <\/li>\n      <li>Interestingly, my next \u201clargest\u201d post (<em>strictly by word-count<\/em>) is technically my <a href=\"https:\/\/shellsharks.com\/infosec-blogs\">infosec blogs compendium<\/a> with ~<strong>6k<\/strong> words.<\/li>\n    <\/ul>\n  <\/li>\n  <li>My last 3 posts all had titles which began with \u201c<em>The<\/em>\u201d. <em>Strange<\/em>, as I did not plan that\u2026<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li><a href=\"https:\/\/twitter.com\/qwordsmith\">@QWORDsmith<\/a> is <a href=\"https:\/\/shellsharks.podbean.com\/e\/extra-decentralized-a-discussion-on-web3-and-slsa\/\">back<\/a> on <a href=\"https:\/\/shellsharks.com\/podcast\">the podcast<\/a> this year for <a href=\"https:\/\/shellsharks.com\/sharkweek\/2022\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/sharkweek.png\" alt=\"&gt;shark week\" style=\"display:inline; height:1em;\" \/><\/a>!<\/li>\n  <li>I really hate when I screw my podcast audio up by not speaking enough <em>into the mic<\/em>. I try to up the gain in post but that just accentuates the static\/bg noise and the entire track becomes rather unlistenable.<\/li>\n  <li>1 of the 45 podcasts on this <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/w8wbjm\/41_cybersecurity_podcasts\/\">random Reddit list<\/a>. In fact, someone reached out to me because of this list to come on the show!<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I\u2019m going to be focusing some attention on engineering <a href=\"https:\/\/medium.com\/chargebee-engineering\/building-appsec-pipeline-for-continuous-visibility-d430beb0a78f\">AppSec automation pipelines<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li>My trusty <em>trashcan<\/em> Mac Pro (<a href=\"https:\/\/support.apple.com\/kb\/sp697?locale=en_US\">2013<\/a>) will <a href=\"https:\/\/www.macrumors.com\/2022\/06\/06\/macos-ventura-compatibility\/\">not be supported by macOS Ventura<\/a>. Looks like I\u2019ll be in the market for a new daily driver. Now I\u2019ll need to decide whether to go <a href=\"https:\/\/www.apple.com\/newsroom\/2020\/11\/apple-unleashes-m1\/\">M1<\/a> or pick up a <a href=\"https:\/\/support.apple.com\/kb\/SP797?locale=en_US\">2019 Mac Pro<\/a>\u2026<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li><em>Once again<\/em>, I\u2019m telling myself I\u2019ll be hitting the gym and getting more active. I\u2019ve even started getting out in the mornings and doing some <a href=\"#sky-meadows\">hiking<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Finished season 1 of <a href=\"https:\/\/tv.apple.com\/us\/show\/severance\/umc.cmc.1srk2goyh2q2zdxcx605w8vtx\">Severance<\/a> on <a href=\"https:\/\/tv.apple.com\/\">Apple TV+<\/a>. <a href=\"https:\/\/www.youtube.com\/watch?v=VngE9BiEe7Q\">A little trippy<\/a>\u2026<\/li>\n  <li>Finished the Boys <a href=\"https:\/\/the-boys.fandom.com\/wiki\/Season_Three\">Season 3<\/a> - <em>epic<\/em>.<\/li>\n  <li>I\u2019ve been binging <a href=\"https:\/\/www.imdb.com\/title\/tt2467372\/\">Brooklyn Nine-Nine<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Helped out at SANSFIRE 2022.<\/li>\n  <li>Considering migrating from <a href=\"https:\/\/www.notion.so\/\">Notion<\/a> to <a href=\"https:\/\/obsidian.md\">Obsidian<\/a>. I literally just switched from <a href=\"https:\/\/simplenote.com\">Simplenote<\/a> to Notion but I just find Notion soooo slow!<\/li>\n<\/ul>\n\n<p><br \/><i class=\"ph ph-mountains lg\"><\/i><\/p>\n\n<h3 id=\"sky-meadows\"><a href=\"https:\/\/www.dcr.virginia.gov\/state-parks\/sky-meadows\">Sky Meadows<\/a><\/h3>\n\n<blockquote>\n  <p><em>Meadow meets the sky,<\/em> <br \/>\n<em>Who am I?<\/em> <br \/>\n<em>Long lost, awanderin\u2019 afloat.<\/em> <br \/>\n<em>Again on the mountain, I wrote.<\/em> <br \/>\n<br \/>\n<em>Ridgeline canopied,<\/em> <br \/>\n<em>Scorched meado\u2019.<\/em> <br \/>\n<em>Leafy streams, that endless babble.<\/em> <br \/>\n<em>Not a poet\u2026 though I dabble.<\/em><\/p>\n<\/blockquote>\n","pubDate":"Sun, 31 Jul 2022 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/07\/31\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/07\/31\/log"},{"title":"Captain's Log, Entry: June 29, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>Some new artwork for the site! New podcasts! OSWE is hard. TV! Covid \ud83d\ude10. But also chicken wings!<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>New transparent background for the <img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/shellsharks.gif\" alt=\"shellsharks&gt;_\" style=\"display:inline; height:1em;\" \/> image on the <a href=\"https:\/\/shellsharks.com\/\">main page<\/a>.<\/li>\n  <li>Now when you <a href=\"https:\/\/shellsharks.com\/404\">404<\/a>, you will be greeted by the <em>fun<\/em> <strong>derpshark<\/strong>.<br \/>\n<img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/derpshark.png\" width=\"200px\" \/> <img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/derpshark-c.png\" width=\"200px\" \/><\/li>\n  <li>The <em>epic<\/em> <strong>Sorcerer Shark<\/strong>!<br \/>\n<img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/2021\/sorcerer-shark.png\" width=\"200px\" \/><\/li>\n  <li>I have some other cool artwork that is incoming\u2026 thanks <a href=\"https:\/\/www.instagram.com\/angryrolypoly\/\">angryrolypoly<\/a>!<\/li>\n  <li>I have surpassed <strong>3000<\/strong> individual blogs in my <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec-blog collection<\/a> - <em>Wow<\/em><\/li>\n  <li>Currently gearing up for <a href=\"https:\/\/shellsharks.com\/sharkweek\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/sharkweek.png\" alt=\"&gt;shark week\" style=\"display:inline; height:1em;\" \/><\/a> which takes place <strong>July 24-July 30<\/strong> next month!<\/li>\n  <li>I really haven\u2019t dropped any posts in a while\u2026 <a href=\"https:\/\/shellsharks.com\/cybercomplexity#title\">until recently<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>Dropped two new <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a> episodes with <a href=\"https:\/\/shellsharks.podbean.com\/e\/take-a-fika\/\">Thomas Peterson<\/a> and <a href=\"https:\/\/shellsharks.podbean.com\/e\/ransomware-as-a-podcast-raap\/\">Greg Edwards<\/a>!<\/li>\n  <li>Currently looking for a podcast guest for <img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/sharkweek.png\" alt=\"&gt;shark week\" style=\"display:inline; height:1em;\" \/>.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li><em>So<\/em>, <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">OSWE<\/a> didn\u2019t go as I had hoped. Will aim for an extension at some point\u2026<\/li>\n  <li>I\u2019m TA-ing SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/intrusion-detection-in-depth\/\">SEC503<\/a> for like the <em>4th<\/em> time. This time with the course author, <a href=\"https:\/\/www.sans.org\/profiles\/david-hoelzer\/\">David Hoelzer<\/a> and course contributor <a href=\"https:\/\/www.sans.org\/profiles\/andrew-laman\/\">Andrew Laman<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li>New <a href=\"https:\/\/www.amazon.com\/dp\/B08QCYVGLF?psc=1&amp;ref=ppx_yo2ov_dt_b_product_details\">teeny-Tesla<\/a> addition to my desk. I\u2019m building <em>quite<\/em> the garage.<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2022\/deskteslas.jpeg\" alt=\"Desk Teslas\" width=\"300px\" \/><\/p>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Bought some stuff from <a href=\"https:\/\/www.tenthousand.cc\">Ten Thousand<\/a>. That means I\u2019m going to start working out <em>right<\/em>?<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<p>Despite how busy I\u2019ve been with work and the blog lately, I\u2019ve watched a suprising amount of TV\/movies\u2026<\/p>\n\n<ul>\n  <li>Started watching <a href=\"https:\/\/tv.apple.com\/us\/show\/severance\/umc.cmc.1srk2goyh2q2zdxcx605w8vtx\">Severance<\/a> on <a href=\"https:\/\/tv.apple.com\/\">Apple TV+<\/a>. A little trippy\u2026<\/li>\n  <li>Finally got around to watching <a href=\"https:\/\/www.imdb.com\/title\/tt1037705\/\">The Book of Eli<\/a> which I thoroughly enjoyed.<\/li>\n  <li>Spider-Man: <a href=\"https:\/\/www.imdb.com\/title\/tt10872600\/\">No Way Home<\/a> was OK but I really didn\u2019t care for it that much.<\/li>\n  <li>The <a href=\"https:\/\/disneyplusoriginals.disney.com\/show\/obi-wan-kenobi\">Obi-Wan Kenobi<\/a> show on <a href=\"https:\/\/www.disneyplus.com\/home\">Disney+<\/a> was solid. I think my only complaint is that it was too short-lived.<\/li>\n  <li>The Boys <a href=\"https:\/\/the-boys.fandom.com\/wiki\/Season_Three\">Season 3<\/a> has been outstanding as usual.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt1745960\/\">Top Gun: Maverick<\/a> was incredible. <a href=\"https:\/\/www.youtube.com\/watch?v=siwpn14IE7E\">Danger Zone<\/a>!<\/li>\n  <li>Liam Neeson\u2019s <a href=\"https:\/\/www.imdb.com\/title\/tt6902332\/\">The Marksman<\/a> was OK.<\/li>\n  <li><a href=\"https:\/\/www.007.com\">James Bond<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt2382320\/\">No Time to Die<\/a> - Really I thought this movie was <em>meh<\/em> and somewhat uninspired.<\/li>\n  <li>Ugh, <a href=\"https:\/\/www.nba.com\/warriors\/news\/warriors-2022-nba-champions-20220616\">Warriors<\/a>. They were the better team no doubt.<\/li>\n  <li>Here\u2019s some stuff I\u2019m eyeing next\u2026\n    <ul>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt1877830\/\">The Batman<\/a> (2022)<\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt11685912\/\">Outer Range<\/a> on <a href=\"https:\/\/www.amazon.com\/Amazon-Video\/\">Prime Video<\/a> looks really interesting\u2026<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Everyone in my house tested positive for <a href=\"https:\/\/www.cdc.gov\/coronavirus\/2019-ncov\/index.html\">Covid<\/a> but somehow I never had any symptoms or tested postive myself. <em>Phew!<\/em><\/li>\n  <li>Visited <a href=\"https:\/\/solacebrewing.com\">Solace Outpost<\/a>, <a href=\"https:\/\/www.wheatlandspring.com\">Wheatland Spring Farm + Brewery<\/a> and <a href=\"https:\/\/www.hillsboroughwine.com\">Hillsborough Winery\/Brewery<\/a>. Hillsborough had a <a href=\"https:\/\/untappd.com\/b\/hillsborough-vineyards-and-brewery-rusty-silo\/2867059\">farmhouse ale\/saison<\/a> that was really fantastic.<\/li>\n  <li>Had some chicken wings <a href=\"https:\/\/velocitywings.net\">recently<\/a>. I love chicken wings.<\/li>\n  <li>Have some trips in the works (after a long hiatus from international travel) to Montreal and maybe even Spain!<\/li>\n<\/ul>\n","pubDate":"Wed, 29 Jun 2022 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/06\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/06\/29\/log"},{"title":"Captain's Log, Entry: May 31, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve added <a href=\"https:\/\/shellsharks.com\/captains-log\">Captain\u2019s Log<\/a> entries to the <a href=\"https:\/\/shellsharks.com\/sitemap.xml\">sitemap<\/a> so the search can now render results from the logs themselves. This also has the effect of having log entries show up in the <a href=\"https:\/\/shellsharks.com\/feeds\/feed.xml\">RSS feed<\/a>.<\/p>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>I\u2019m working on publishing an awesome <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a> I recorded with <a href=\"https:\/\/se.linkedin.com\/in\/thomas-peterson-sweden\">Thomas Peterson<\/a>, who maintains a <a href=\"https:\/\/tpetersonkth.github.io\">blog<\/a> with lots of in-depth <a href=\"https:\/\/www.hackthebox.com\">Hack The Box<\/a> writeups (among other things)!<\/li>\n  <li>I have an upcoming podcast with the <a href=\"https:\/\/www.linkedin.com\/in\/gedwardswpd\">CEO<\/a> of <a href=\"https:\/\/www.getcryptostopper.com\/\">CryptoStopper<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>Progress through <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">AWAE<\/a> has been\u2026 <em>slow<\/em> (to say the least). An extension will be necessary to complete the course.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>I picked up the Hue <a href=\"https:\/\/www.philips-hue.com\/en-us\/p\/hue-white-and-color-ambiance-iris-table-lamp\/046677561796\">Iris table lamp<\/a> as my older <a href=\"https:\/\/www.philips-hue.com\/en-us\/p\/hue-white-and-color-ambiance-bloom-table-lamp\/046677560188\">Hue Bloom<\/a> decided to quit. It looks really cool!<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/en.wikipedia.org\/wiki\/Boston_Celtics\">Boston<\/a> has indeed made it to the finals (<a href=\"https:\/\/shellsharks.com\/captains-log\/2022\/04\/28\/log#tv\">as I predicted<\/a>)! Can they beat this beast of a <a href=\"https:\/\/en.wikipedia.org\/wiki\/Golden_State_Warriors\">Warriors<\/a> team though? I\u2019m starting to think <em>not<\/em>. Overall, these playoffs have been pretty strange with a lot of blowouts. I hope that the finals are interesting at least, regardless of who wins.<\/li>\n  <li>I\u2019ve finished season 1 of the <a href=\"https:\/\/www.imdb.com\/title\/tt2934286\/\">Halo<\/a> TV show. The finale was pretty epic and I can\u2019t wait for season 2!<\/li>\n  <li>I finished <a href=\"https:\/\/www.marvel.com\/tv-shows\/moon-knight\/1\">Moon Knight<\/a> and even though overall I really enjoyed it, I thought the finale ended the show in a very abrupt way. Maybe I just wish there was more of it\u2026<\/li>\n  <li><a href=\"https:\/\/tv.apple.com\/us\/show\/prehistoric-planet\/\">Prehistoric Planet<\/a> on <a href=\"https:\/\/tv.apple.com\">Apple TV+<\/a> looks really cool and I\u2019m excited to watch it.<\/li>\n  <li>The <a href=\"https:\/\/www.imdb.com\/title\/tt8466564\/\">Obi-Wan Kenobi<\/a> show on <a href=\"http:\/\/disneyplus.com\">Disney+<\/a> has begun as well and of course I\u2019m enjoying it so far. It takes place 7(<em>ish<\/em>) years after the rise of the <a href=\"https:\/\/starwars.fandom.com\/wiki\/Galactic_Empire\">Empire<\/a> and <a href=\"https:\/\/www.starwars.com\/databank\/darth-vader\">Darth Vader<\/a>.<\/li>\n  <li>Later this year, the <a href=\"https:\/\/www.imdb.com\/title\/tt7631058\/\">Lord of the Rings: The Rings of Power<\/a> show and the new <a href=\"https:\/\/www.hbo.com\/game-of-thrones\">Game of Thrones<\/a> prequel, <a href=\"https:\/\/www.hbo.com\/house-of-the-dragon\">House of the Dragon<\/a> will be debuting. <em>Pumped!<\/em><\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Purchased a new <a href=\"https:\/\/www.nintendo.com\/switch\/\">Switch<\/a> Pro Controller to play games with the wife.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>Some minor market recovery after the massive multi-day sell-off.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>I attended a wedding at <a href=\"https:\/\/moraisvineyards.com\">Morais Vineyard &amp; Winery<\/a> - good wine!<\/li>\n  <li>I\u2019m heading to <a href=\"https:\/\/www.deadwood.com\">Deadwood<\/a> (once again) for <a href=\"https:\/\/wildwesthackinfest.com\/deadwood\/\">Wild West Hackin\u2019 Fest<\/a> 2022!<\/li>\n<\/ul>\n","pubDate":"Tue, 31 May 2022 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/05\/31\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/05\/31\/log"},{"title":"Captain's Log, Entry: April 28, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve got a number of interesting posts in-flight. At this rate I\u2019ll have them ready for <a href=\"https:\/\/shellsharks.com\/sharkweek\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/sharkweek.png\" alt=\"&gt;Shark Week\" style=\"display:inline; height:1em;\" \/><\/a> in July. I\u2019ve debuted two new Shellsharks doodles, one for <a href=\"https:\/\/nationaldaycalendar.com\/world-circus-day-april-16\/\">World Circus Day<\/a> and one for <a href=\"https:\/\/www.earthday.org\">Earth Day<\/a>.<\/p>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/logos\/avatar-circus.png\" alt=\"shellsharks-valentines\" width=\"400\" \/><br \/><br \/><\/p>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/logos\/avatar-earthday.png\" alt=\"shellsharks-valentines\" width=\"400\" \/><br \/><br \/><\/p>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>A <a href=\"https:\/\/shellsharks.podbean.com\/e\/suburban-turtle\/\">new episode<\/a> is incoming! (Working on editing now and hoping to publish tomorrow.)<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I\u2019m going to pull the trigger on a <a href=\"https:\/\/leetcode.com\">LeetCode<\/a> Premium sub. I also got back into <a href=\"https:\/\/www.hackerrank.com\">HackerRank<\/a> and started knocking out some of those challenges.<\/li>\n  <li>Currently reading <a href=\"https:\/\/www.feistyduck.com\/books\/bulletproof-tls-and-pki\/\">Bulletproof TLS and PKI<\/a> (2nd edition) and <a href=\"https:\/\/shostack.org\/books\/threat-modeling-book\">Threat Modeling<\/a> (by <a href=\"https:\/\/shostack.org\/about\/adam\">Adam Shostack<\/a>).<\/li>\n  <li>Officially started Offensive Security\u2019s <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">WEB-300<\/a> course. With any luck I\u2019ll be taking the OSWE exam in June.<\/li>\n  <li>In the midst of all this other stuff, I\u2019m also learning as much platform security\/engineering as I can (e.g. AWS\/Cloud, Kubernetes\/Containers, APIs\/Microservices, etc\u2026) I\u2019m even thinking of dropping in on some sessions at <a href=\"https:\/\/platformcon.com\">PlatformCON<\/a> 2022.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>Summer is upon me and I\u2019ve been wanting to upgrade my desk space with a fan. I recently picked up Dyson\u2019s <a href=\"https:\/\/www.dyson.com\/air-treatment\/air-purifiers\/pure-cool-tower-tp01\/white-silver\">Pure Cool TP01<\/a> fan in White\/Silver. I really like the aesthetic and low-profile. The air-power is pretty good and it even has some air-purification capability. The only complaint I have so far is there is a mechanical whine at power level 6 (randomly) which is not present on any other level. I\u2019d say overall it\u2019s decently quiet but not anything astounding. For now I think I\u2019ll be keeping it.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Finished <a href=\"https:\/\/www.imdb.com\/title\/tt5675620\/\">The Punisher<\/a> on <a href=\"https:\/\/www.amazon.com\/amazonprime\">Prime<\/a>. I really enjoyed it.<\/li>\n  <li>Currently watching Marvel\u2019s <a href=\"https:\/\/www.imdb.com\/title\/tt10234724\/\">Moon Knight<\/a>. That\u2019s good so far.<\/li>\n  <li>The <a href=\"https:\/\/www.imdb.com\/title\/tt2934286\/\">Halo<\/a> TV show is in full swing. For super-fans of the <a href=\"https:\/\/en.wikipedia.org\/wiki\/Halo_(franchise)\">OG games<\/a>, this show has been pretty awesome.<\/li>\n  <li>As if I haven\u2019t watched enough <a href=\"https:\/\/www.marvel.com\">Marvel<\/a> stuff lately, I\u2019m considering binging the <a href=\"https:\/\/www.imdb.com\/title\/tt3322312\/\">Daredevil<\/a> TV series next.<\/li>\n  <li>Even though <a href=\"https:\/\/www.basketball-reference.com\/players\/j\/jamesle01.html\">Lebron<\/a> didn\u2019t make it, I\u2019m of course still watching the <a href=\"https:\/\/www.nba.com\/playoffs\/2022\">NBA Playoffs<\/a>. <a href=\"https:\/\/en.wikipedia.org\/wiki\/Boston_Celtics\">Boston<\/a> looks like a strong choice to win it all at this point.\n    <ul>\n      <li><a href=\"https:\/\/www.youtube.com\/watch?v=zDOF56D0yo4\">Ja<\/a>.<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li><a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA\/\">TSLA<\/a> had a <a href=\"https:\/\/www.cnet.com\/personal-finance\/investing\/tesla-seeks-second-stock-split-what-investors-should-know\/\">reported<\/a> stock split incoming, however no new news yet\u2026<\/li>\n  <li>Looks like <a href=\"https:\/\/www.nytimes.com\/2022\/04\/24\/technology\/twitter-board-elon-musk.html\">Twitter to Elon Musk<\/a> is happening. I think a lot of improvements can be made to the service and <a href=\"https:\/\/www.tesla.com\/elon-musk\">Elon<\/a> seems motivated to do so. I mostly just hope this doesn\u2019t take too much mindshare from his <a href=\"https:\/\/www.thomasnet.com\/insights\/elon-musk-companies\/\">other ventures<\/a> I am more interested in (*<em>cough<\/em>* <a href=\"https:\/\/www.tesla.com\/cybertruck\">Cybertruck<\/a> *<em>cough<\/em>*).<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Tesla\u2019s <a href=\"https:\/\/www.youtube.com\/watch?v=fiwUE_2JhvY\">Cyber Rodeo<\/a> celebrated the opening of <a href=\"https:\/\/www.tesla.com\/giga-texas\">Giga Texas<\/a>. It was also at this event that Elon asserted <a href=\"https:\/\/www.tesla.com\/cybertruck\">Cybertruck<\/a> production would begin next year (2023). To say I\u2019m excited would be an understatement!<\/li>\n  <li>Warm weather means brewery season! Here\u2019s a few I visited this month\u2026\n    <ul>\n      <li><a href=\"https:\/\/www.wheatlandspring.com\">Wheatland Spring Farm + Brewery<\/a> - Their <a href=\"https:\/\/www.wolvesandpeople.com\">Wolves &amp; People<\/a> collab, \u201c<a href=\"https:\/\/untappd.com\/b\/wheatland-spring-farm-brewery-two-barns-dark-farmhouse-ale\/4702572\">Two Barns<\/a>\u201d was spectacular.<\/li>\n      <li><a href=\"https:\/\/harvestgap.com\">Harvest Gap Brewery<\/a><\/li>\n      <li><a href=\"https:\/\/dirtfarmbrewing.com\">Dirt Farm Brewing<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n","pubDate":"Thu, 28 Apr 2022 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/04\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/04\/28\/log"},{"title":"Captain's Log, Entry: March 27, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>I\u2019ve set aside some real estate for a \u201c<a href=\"https:\/\/shellsharks.com\/pro\">Pro<\/a>\u201d section of the site. What this will be used for I\u2019m not quite sure. But it does sport a cool new simplified Shellsharks logo.<\/p>\n\n<p><a href=\"https:\/\/shellsharks.com\/pro\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/pro\/Red+fin+logo+gif+max.gif\" alt=\"shellsharks-pro\" width=\"200\" \/><\/a><\/p>\n\n<ul>\n  <li>According to <em>Google Search Impact<\/em>, my site received 350 clicks from <a href=\"https:\/\/www.google.com\/search?q=shellsharks\">Google Search<\/a> in a 28 day span. Doesn\u2019t seem like a lot but I suppose it\u2019s a record for me!<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>Getting a little more hands-on in <a href=\"https:\/\/aws.amazon.com\">AWS<\/a>. The <a href=\"https:\/\/docs.aws.amazon.com\/wellarchitected\/latest\/security-pillar\/welcome.html\">Security Pillar<\/a> of the <a href=\"https:\/\/docs.aws.amazon.com\/wellarchitected\/latest\/framework\/welcome.html\">AWS Well-Architected Framework<\/a> is a good place to start.<\/li>\n  <li>Practicing for <a href=\"https:\/\/en.wikipedia.org\/wiki\/Big_Tech\">FAANG<\/a>? Check out <a href=\"https:\/\/github.com\/gracenolan\/Notes\/blob\/master\/interview-study-notes-for-security-engineering.md\">this study guide from Grace Nolan<\/a>.\n    <ul>\n      <li>Been brushing off my <a href=\"https:\/\/www.python.org\">Python<\/a>, Data Structures and Algorithms skillz<\/li>\n      <li>Been going through <a href=\"https:\/\/www.amazon.com\/Structures-Algorithms-Python-Michael-Goodrich\/dp\/1118290275\">Data Structures &amp; Algorithms in Python<\/a> book.<\/li>\n      <li><a href=\"https:\/\/www.amazon.com\/Cracking-Coding-Interview-Programming-Questions\/dp\/0984782850\">Cracking the Coding Interview<\/a> is a good book for practicing challenging DS\/Algo challenges.<\/li>\n      <li>Been also considering <a href=\"https:\/\/leetcode.com\">LeetCode<\/a>\u2026<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/www.apple.com\/mac-studio\/\">Mac Studio<\/a> and <a href=\"https:\/\/www.apple.com\/studio-display\/\">Studio Display<\/a> (among a few other things) were both announced at the <a href=\"https:\/\/www.apple.com\/apple-events\/march-2022\/\">March 2022 Apple event<\/a>. As <a href=\"https:\/\/www.theverge.com\/22981815\/apple-mac-studio-m1-ultra-max-review\">impressive as the benchmarks are looking<\/a>, I don\u2019t plan on picking one up. I really want to see what the new Mac Pro will look like. At which point, I will decide between picking a new M1-Mac Pro up or going and picking up a used <a href=\"https:\/\/support.apple.com\/kb\/SP797?locale=en_US\">2019 Intel-based Mac Pro<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>The new <a href=\"https:\/\/en.wikipedia.org\/wiki\/The_Lord_of_the_Rings\">Lord of the Rings<\/a> TV show on <a href=\"https:\/\/www.amazon.com\/amazonprime\">Amazon Prime<\/a>, \u201c<a href=\"https:\/\/www.imdb.com\/title\/tt7631058\/\">The Rings of Power<\/a>\u201d looks awesome! Can\u2019t wait for it to come out.<\/li>\n  <li>I watched the <a href=\"https:\/\/oscars.org\">Oscar<\/a>-nominated movie \u201c<a href=\"https:\/\/www.imdb.com\/title\/tt10293406\/\">The Power of the Dog<\/a>\u201d and for the life of me can\u2019t figure out how it was nominated for best picture\u2026<\/li>\n  <li>Watched <a href=\"https:\/\/www.netflix.com\/title\/81313229\">Rurouni Kenshin<\/a> and the <a href=\"https:\/\/www.netflix.com\/watch\/81313227\">sequel<\/a> on <a href=\"https:\/\/www.netflix.com\/\">Netflix<\/a>. Wasn\u2019t familiar with the <a href=\"https:\/\/www.imdb.com\/title\/tt0182629\/\">anime<\/a> but the movie was awesome.<\/li>\n  <li><a href=\"https:\/\/www.imdb.com\/title\/tt11000902\/\">Our Flag Means Death<\/a> on <a href=\"https:\/\/www.hbomax.com\">HBO Max<\/a> was funny.<\/li>\n  <li>Re-watched the <a href=\"https:\/\/www.imdb.com\/list\/ls047442991\/\">Transporter series<\/a>. Both the <a href=\"https:\/\/www.imdb.com\/title\/tt0293662\/\">original<\/a> and <a href=\"https:\/\/www.imdb.com\/title\/tt0388482\/\">2<\/a> are so good\u2026<\/li>\n  <li>I got a sub to <a href=\"https:\/\/www.paramountplus.com\/home\/\">Paramount+<\/a> specifically to watch the new live-action <a href=\"https:\/\/www.imdb.com\/title\/tt2934286\/\">Halo series<\/a>. Haven\u2019t started it yet though.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>Stocks have started to recover a bit. I like it.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li><a href=\"https:\/\/faangshaadi.com\">FAANG Shaadi<\/a>\u2026<\/li>\n  <li><a href=\"https:\/\/www.shlinkedin.com\">Shlinkedin<\/a> - Hilarious<\/li>\n<\/ul>\n","pubDate":"Sun, 27 Mar 2022 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2022\/03\/27\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/03\/27\/log"},{"title":"Captain's Log, Entry: February 28, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>It\u2019s been difficult working on new content with all the other projects I have in-flight. I have some things in progress and some other ideas but haven\u2019t had time. I did however debut of the Shellsharks Valentines day logo\u2026<\/p>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/logos\/avatar-valentines.png\" alt=\"shellsharks-valentines\" width=\"400\" \/><br \/><br \/><\/p>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/shellsharks.com\/podcast\">Podcast<\/a> episode I had planned fell through after recording. <em>Oh well<\/em>, these things happen!<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I\u2019ve found a couple \u201clearning roadmap\u201d resources that I\u2019ve been reading through\u2026\n    <ul>\n      <li><a href=\"http:\/\/scrty.io\">Starting Up Security<\/a><\/li>\n      <li><a href=\"https:\/\/securityflow.io\/roadmap\/\">SecurityFlow<\/a><\/li>\n      <li><a href=\"https:\/\/www.cs.dartmouth.edu\/~sergey\/drafts\/sismat-manual-locasto.pdf\">Hacking the Abacus<\/a><\/li>\n    <\/ul>\n  <\/li>\n  <li>I\u2019ve (finally) ported by existing notes (namely the ones related to my infosec-ing) to <a href=\"https:\/\/www.notion.so\">Notion<\/a>. It has much more functionality than my old notes app, <a href=\"https:\/\/simplenote.com\">Simplenote<\/a>. I didn\u2019t realize how many things I had stored in there over the years - close to 100 notes! I\u2019m still using Simplenote for basic lists though.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve set up the <a href=\"https:\/\/eshop.macsales.com\/shop\/owc-thunderbolt-dock\">OWC Thunderbolt Dock<\/a>. Works great!<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019m not sure when it began, but for a while my Mac Pro (<a href=\"https:\/\/support.apple.com\/kb\/sp697?locale=en_US\">2013<\/a>) was shutting itself off just about every night (and in some cases even out of nowhere while I was using it). I attributed it to old hardware running the <a href=\"https:\/\/www.apple.com\/macos\/monterey\/\">modern OS<\/a> and the incompatibilities that might come with that. Though this may have been true, I managed to fix this issue by going to the <a href=\"https:\/\/support.apple.com\/sr-rs\/guide\/mac-help\/mchlp1168\/mac\">Energy Saver<\/a> settings pane in System Preferences and checking the \u201c<em>Prevent your Mac from automatically sleeping when the display is off<\/em>\u201d box. No issues since!<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/www.macrumors.com\/guide\/2022-mac-pro\/\">Refreshed word<\/a> on Apple\u2019s 2022 plans for the <a href=\"https:\/\/www.apple.com\/mac-pro\">Mac Pro<\/a>. The expectation is there will be a refreshed Intel Mac Pro and a new M1-laden version of the Mac Pro. I\u2019m still interested in the Intel version but will consider the M1. We\u2019ll see!<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Hit the gym for the first time in a while. Membership has shot up to $150\/mo which is <strong>insane<\/strong>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been watching a bit of TV at night lately. <a href=\"https:\/\/www.amazon.com\/Amazon-Video\/\">Amazon Prime Video<\/a> has some decent stuff\u2026\n    <ul>\n      <li>I binged <a href=\"https:\/\/www.imdb.com\/title\/tt9288030\/\">Reacher<\/a> in 2 days. Short but entertaining.<\/li>\n      <li>I also 2-day binged <a href=\"https:\/\/www.imdb.com\/title\/tt11247158\/\">The Legend of Vox Machina<\/a>. I thought it was really funny and liked the premise\/storyline.<\/li>\n      <li>I\u2019m in season 2 of <a href=\"https:\/\/www.imdb.com\/title\/tt2149175\/\">The Americans<\/a> which has been really good. Though admittedly strange to watch with what is <a href=\"https:\/\/www.vox.com\/2022\/2\/23\/22948534\/russia-ukraine-war-putin-explosions-invasion-explained\">going on with Russia<\/a> right now\u2026<\/li>\n      <li>I realized <a href=\"https:\/\/www.imdb.com\/title\/tt2861424\/episodes?season=5\">season 5 of Rick and Morty<\/a> was on <a href=\"https:\/\/www.hbomax.com\">HBO Max<\/a> so I ran through those episodes. Funny as usual but really upped some of the insanity (e.g. Asimov Cascade).<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>Stocks are in the toilet\u2026 Stupid Putin\u2026<\/li>\n<\/ul>\n","pubDate":"Mon, 28 Feb 2022 00:30:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2022\/02\/28\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/02\/28\/log"},{"title":"Captain's Log, Entry: January 29, 2022","author":"mike@shellsharks.com (Mike)","description":"<p>Received some cool swag from my recent experience with the <a href=\"https:\/\/www.sans.org\">SANS<\/a> NetWars <a href=\"https:\/\/www.sans.org\/mlp\/tournament-of-champions-2021\/\">Tournament of Champions<\/a>.<\/p>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2022\/sans-netwars-toc.jpeg\" alt=\"sans-networks-toc\" width=\"400\" \/><br \/><br \/><\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n\n<ul>\n  <li>My <a href=\"https:\/\/search.google.com\/search-console\/about\">Google Search Console<\/a> has revealed a few interesting statistics about <a href=\"https:\/\/shellsharks.com\/\">the site<\/a> (in 2021) which I\u2019ll share below\u2026\n    <ul>\n      <li><strong>First Page<\/strong>: The following queries will yield a Shellsharks result on the first page of <a href=\"https:\/\/www.google.com\/\">Google<\/a> search results. (<em>some unsurprisingly so<\/em>)\n        <ul>\n          <li><a href=\"https:\/\/www.google.com\/search?q=dns server dynamic update record injection\">dns server dynamic update record injection<\/a><\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=gcpn review\">gcpn review<\/a><\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=shellshark\">shellshark<\/a> \/ <a href=\"https:\/\/www.google.com\/search?q=shell sharks\">shell sharks<\/a> (duh!)<\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=sqlmap tamper\">sqlmap tamper<\/a><\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=openssh 8.2p1 exploit github\">openssh 8.2p1 exploit github<\/a><\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=herman miller embody logitech review\">herman miller embody logitech review<\/a><\/li>\n          <li><a href=\"https:\/\/www.google.com\/search?q=host discovery scan nessus\">host discovery scan nessus<\/a><\/li>\n        <\/ul>\n      <\/li>\n      <li><strong>Total Clicks<\/strong>: 2.28K<\/li>\n      <li><strong>Top Pages<\/strong>: <a href=\"https:\/\/shellsharks.com\/dynamic-dns-injection\">1<\/a> | <a href=\"https:\/\/shellsharks.com\/training-retrospective\">2<\/a> | <a href=\"https:\/\/shellsharks.com\/sqlmap-tamper-magic\">3<\/a><\/li>\n      <li><strong>Top Countries<\/strong>: US, India, UK, Canada, Turkey<\/li>\n    <\/ul>\n  <\/li>\n  <li>The start of 2022 featured one of my newly minted <em>special<\/em> Shellsharks logos for New Years. <em>Fun yeah<\/em>? Keep an eye out for others in the future!<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/logos\/avatar-newyears.png\" alt=\"shellsharks-nye\" width=\"400\" \/><br \/><br \/><\/p>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>I have an episode coming soon where I chat with the author of <a href=\"https:\/\/www.vanimpe.eu\">vanimpe.eu<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>Finally got around to <em>somewhat<\/em> setting up my Elgato <a href=\"https:\/\/www.elgato.com\/en\/stream-deck\">Stream Deck<\/a>. Mostly I added some <a href=\"#investing\">stock tickers<\/a> and a few day-countdown widgets. I did however configure one button to turn off\/on the <a href=\"https:\/\/www.philips-hue.com\/en-us\">Hue<\/a> lights around my desk area.<\/li>\n  <li>Purchased a <a href=\"https:\/\/www.amazon.com\/gp\/product\/B08SVWY3F7\/ref=ppx_yo_dt_b_search_asin_title?ie=UTF8&amp;psc=1\">2x3 KVM switch<\/a> (2 computers across 3 monitors) which will allow me to quickly jump between my personal machine and a work machine where both can be connected to all three of my monitors.\n    <ul>\n      <li>Apple will soon be releasing \u201c<a href=\"https:\/\/www.theverge.com\/2022\/1\/27\/22904957\/apple-universal-control-ipados-15-4-macos-monterey-12-3-betas\">Universal Control<\/a>\u201d for <a href=\"https:\/\/www.apple.com\/macos\/monterey\/\">Monterey<\/a> which may improve other workflows I have as well!<\/li>\n    <\/ul>\n  <\/li>\n  <li>Expecting my <a href=\"https:\/\/eshop.macsales.com\/shop\/owc-thunderbolt-dock\">OWC Thunderbolt Dock<\/a> tomorrow which will help me easily swap different machines into my 2x3 KVM switch configuration. It\u2019s an expensive dock so I\u2019m hoping it works out well!<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>I recently sprung for the <a href=\"https:\/\/www.apple.com\/apple-one\/\">Apple One<\/a> \u201cPremier\u201d subscription. This gives me <a href=\"https:\/\/news.apple.com\">News+<\/a> and <a href=\"https:\/\/fitness.apple.com\">Fitness+<\/a> in addition to everything else. I did it mainly for news but I\u2019ll eventually get around to trying out Fitness+ <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/03\/02\/log#fitness\">again<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Need to catch up on <a href=\"https:\/\/www.disneyplus.com\/series\/the-book-of-boba-fett\/57TL7zLNu2wf\">The Book of Boba Fett<\/a>. I feel like I\u2019m a few weeks behind at this point.<\/li>\n  <li>Started (finally) watching (*<em>cough<\/em>* <em>binging<\/em>) <a href=\"https:\/\/www.imdb.com\/title\/tt2149175\/\">The Americans<\/a>. Really good so far after a few episodes.<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Set up the <a href=\"https:\/\/www.xbox.com\/en-US\/\">Xbox<\/a> but have done virtually nothing with it.<\/li>\n  <li>Played a little bit of the new version of <a href=\"https:\/\/terraria.org\">Terraria<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>Bought some <a href=\"https:\/\/finance.yahoo.com\/quote\/RIVN\/\">RIVN<\/a>. Almost immediately regretted it as that stock has dropped nearly 50% since. Then again, all tech stocks are sort of in the toilet right now\u2026<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Found this very <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/sd4fmc\/what_is_your_position_and_how_much_do_you_make\/\">interesting thread<\/a> on infosec salaries on <a href=\"https:\/\/www.reddit.com\">Reddit<\/a>.<\/li>\n<\/ul>\n","pubDate":"Sat, 29 Jan 2022 00:30:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2022\/01\/29\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2022\/01\/29\/log"},{"title":"Captain's Log, Entry: December 30, 2021","author":"mike@shellsharks.com (Mike)","description":"<p><strong>2021<\/strong> was a pretty action-packed year. I take some time later in this entry to <a href=\"#a-year-in-review-and-the-path-forward\">reflect on the last 12 months, as well as look to next year<\/a> and what it may bring.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>Over <strong>200<\/strong> <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities#title\">named vulnerabilities<\/a> recorded. <em>Fun stuff<\/em>.<\/li>\n  <li>Out w\/ the old and in with the new. I have a new (slightly tweaked version of the old) logo! Posting the old one here for posterity\u2019s sake.<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/shellsharks-v1.png\" alt=\"old shellsharks logo\" width=\"150\" height=\"150\" \/><\/p>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>I have a <a href=\"https:\/\/shellsharks.podbean.com\/e\/security-friendliness-engineering\/\">new episode<\/a> out (finally).<\/li>\n  <li>I also have some guests lined up for the new year.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I plan to <em>finally<\/em> start the <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">WEB-300<\/a> (OSWE) training from <a href=\"https:\/\/www.offensive-security.com\">Offensive Security<\/a> once the new year begins. This is decent timing as I suspect I\u2019ll be doing far more appsec + pentesting this year\u2026<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>Picked up the <em>15-key<\/em> <a href=\"https:\/\/www.elgato.com\/en\/stream-deck\">Elgato Stream Deck<\/a>. I have a few ideas for what to do with this ranging from <a href=\"https:\/\/www.twitch.tv\/shellsharks\">Twitch<\/a> streaming, to home-automation and more\u2026 <a href=\"https:\/\/www.macstories.net\/stories\/getting-started-with-shortcuts-for-mac-and-the-stream-deck\/\">This writeup<\/a> from <a href=\"https:\/\/www.macstories.net\">MacStories<\/a> really inspired me to get the device as I think it has more versatility than just for streaming.<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Played bball once. Was a great workout but was sore for about a week. Hopefully can get more of this in next year.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.disneyplus.com\/series\/the-book-of-boba-fett\/57TL7zLNu2wf\">The Book of Boba Fett<\/a> just started streaming yesterday. Will be getting into this <em>very<\/em> soon.<\/li>\n  <li><a href=\"https:\/\/disneyplusoriginals.disney.com\/show\/hawkeye\">Hawkeye<\/a> on <a href=\"https:\/\/www.disneyplus.com\">Disney+<\/a> has been far more entertaining than I originally expected. Though the ending of the season was a bit weak imo.<\/li>\n  <li><em>\u2018twas<\/em> the season. I\u2019ll share some of my must-watch Xmas movies\u2026\n    <ul>\n      <li>Home Alone (<a href=\"https:\/\/www.imdb.com\/title\/tt0099785\/\">1<\/a> + <a href=\"https:\/\/www.imdb.com\/title\/tt0104431\/\">2<\/a>)<\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0319343\/\">Elf<\/a><\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0119715\/\">Mousehunt<\/a> (Maybe not a <em>pure<\/em> Xmas movie but it\u2019s wintry and I watched it every year growing up.)<\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0111070\/\">The Santa Clause<\/a><\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0170016\/\">How the Grinch Stole Christmas<\/a><\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0314331\/\">Love Actually<\/a> (\u2026for the wife, but I\u2019ll admit it\u2019s pretty entertaining.)<\/li>\n      <li><a href=\"https:\/\/www.imdb.com\/title\/tt0059026\/\">A Charlie Brown Christmas<\/a> - Classic!<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<p><i class=\"ph ph-snowflake lg\"><\/i><\/p>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Picked up a <a href=\"https:\/\/www.xbox.com\/en-US\/consoles\/xbox-series-x\">Series X<\/a> and am ready to get my <a href=\"https:\/\/www.xbox.com\/en-US\/games\/halo-infinite\">Infinite<\/a> on! Just have to find time\u2026<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li><a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA\/\">TSLA<\/a> <i class=\"ph ph-chart-line-up\"><\/i><\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shop.tesla.com\/product\/cyberwhistle\">Cyberwhistle<\/a>. That is all.<\/li>\n  <li>I may not have the <a href=\"https:\/\/www.tesla.com\/cybertruck\">Cybertruck<\/a> yet, but I do have <a href=\"https:\/\/hotwheels.fandom.com\/wiki\/Tesla_Cybertruck\">this<\/a>.<\/li>\n  <li>I need to commission a <span class=\"primarycolor\">Cybershark<\/span>.<\/li>\n<\/ul>\n\n<h2 id=\"a-year-in-review-and-the-path-forward\">A Year in Review and the Path Forward<\/h2>\n\n<p>2021 has been yet another \u201cyear of the pandemic\u201d, but it didn\u2019t stop me from getting at least a few things accomplished\u2026<\/p>\n\n<ul>\n  <li>\n    <p>It\u2019s been a wild and (by some metric) successful year for me <a href=\"https:\/\/shellsharks.com\/resume\">professionally<\/a>. Here\u2019s to more new and exciting things in the near future!<\/p>\n  <\/li>\n  <li>\n    <p>The <a href=\"https:\/\/shellsharks.com\/\">blog\/site<\/a> saw a complete design overhaul, 20+ new pieces of content, addition of a <a href=\"https:\/\/shellsharks.com\/resume\">digital resume<\/a>, my online journal - the <a href=\"https:\/\/shellsharks.com\/captains-log#title\">Captains Log<\/a>, start of <a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a>, the first annual <a href=\"https:\/\/shellsharks.com\/sharkweek\">&gt;Shark Week<\/a> and plenty more.<\/p>\n  <\/li>\n  <li>\n    <p>I did a healthy amount of certifications\/training this year too. Here\u2019s a summary by the numbers\u2026<\/p>\n    <ul>\n      <li>New Courses | <strong>4<\/strong> | SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/cloud-penetration-testing\/\">SEC588<\/a>, SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/practical-osint-analysis-and-automation\/\">SEC537<\/a>, SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/enterprise-cloud-threat-vulnerability-assessment\/\">SEC460<\/a>, SANS <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/blue-team-fundamentals-security-operations-analysis\/\">SEC450<\/a><\/li>\n      <li>Certs Achieved | <strong>3<\/strong> | GIAC <a href=\"https:\/\/www.giac.org\/certifications\/cloud-penetration-tester-gcpn\/\">GCPN<\/a>, GIAC <a href=\"https:\/\/www.giac.org\/certifications\/enterprise-vulnerability-assessor-geva\/\">GEVA<\/a>, GIAC <a href=\"https:\/\/www.giac.org\/certifications\/security-operations-certified-gsoc\/\">GSOC<\/a><\/li>\n      <li><a href=\"https:\/\/www.sans.org\">SANS<\/a> vTA Assignments | <strong>4<\/strong><\/li>\n      <li>\u2026and I was a <a href=\"https:\/\/www.sans.org\/cyber-ranges\/netwars-tournaments\/core\/\">SANS Core NetWars Tournament<\/a> champion!<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<p>Though nothing is certain for 2022 (except of course for more pandemic), here\u2019s what I hope to achieve in the new year\u2026<\/p>\n\n<ul>\n  <li>Spend more time researching and writing. Not going to put a number on it but I\u2019ll know if it I get there.<\/li>\n  <li><a href=\"https:\/\/shellsharks.com\/tags?tag=appsec\">Appsec<\/a> + <a href=\"https:\/\/shellsharks.com\/tags?tag=red\">Offsec<\/a> + <a href=\"https:\/\/shellsharks.com\/tags?tag=cloud\">Cloudsec<\/a>.<\/li>\n  <li>I have a couple <a href=\"https:\/\/shellsharks.com\/symphonic-vulnerability-surface-mapping#vulnscape\">open source projects<\/a> I would like to get off the ground and work on.<\/li>\n  <li>I\u2019m aiming to be much better and more consistent with the <a href=\"https:\/\/shellsharks.com\/podcast\">Podcast<\/a> next year.<\/li>\n  <li>I\u2019ve got a few training\/cert goals - <a href=\"https:\/\/www.offensive-security.com\/learn-one\/awaeoswe\/\">OSWE<\/a> and <a href=\"https:\/\/www.giac.org\/get-certified\/giac-security-expert\/\">GSE<\/a> being two of the main ones.<\/li>\n<\/ul>\n\n<p>Here\u2019s to <strong>2022<\/strong>!<\/p>\n\n<p><i class=\"ph ph-cheers lg\"><\/i><\/p>\n","pubDate":"Thu, 30 Dec 2021 00:30:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2021\/12\/30\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/12\/30\/log"},{"title":"Captain's Log, Entry: December 1, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>Lookin\u2019 to snag that Mac Pro tower, and watching plenty of movies and TV.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>My <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec blogs inventory<\/a> has sailed over 2k individual sites. <em>Really cool<\/em>!<\/li>\n  <li>I\u2019m working on some new artwork for the site.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I served as a <a href=\"https:\/\/www.sans.org\">SANS<\/a> vTA for the <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/ics-visibility-detection-response\/\">ICS515<\/a> course. <a href=\"https:\/\/www.trendmicro.com\/vinfo\/us\/security\/definition\/industrial-control-system\">ICS<\/a> has been a professional interest of mine for some time and it was nice to see how the course had changed since I took it a few years ago.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>I\u2019ve been somewhat resistant to the idea of purchasing an <a href=\"https:\/\/www.apple.com\/newsroom\/2020\/11\/apple-unleashes-m1\/\">M1-powered Mac<\/a> since its inception for the simple reason of it\u2019s <a href=\"https:\/\/blogs.vmware.com\/teamfusion\/2021\/04\/fusion-on-apple-silicon-progress-update.html\">inability<\/a> to (truly) virtualize Intel-based Windows. I recently discovered <a href=\"https:\/\/mac.getutm.app\">this<\/a> and it has gotten me more excited about the possibility of being able to perform my professional\/infosec-related tasks, in a virtualized environment, on an M1 Mac. With that said, and despite the <a href=\"https:\/\/www.youtube.com\/watch?v=Un4gNs8spls\">insane power<\/a> of the new <a href=\"https:\/\/www.apple.com\/shop\/buy-mac\/macbook-pro\/16-inch\">M1 Macbook Pros<\/a>, I still find myself wanting the beast that is the <a href=\"https:\/\/www.apple.com\/newsroom\/2019\/06\/apple-unveils-powerful-all-new-mac-pro-and-groundbreaking-pro-display-xdr\/\">2019 Mac Pro<\/a>\u2026<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.disneyplus.com\/home\">Disney+<\/a> is really killing it. I need to make time to catch up on some of their new content\u2026\n    <ul>\n      <li><a href=\"https:\/\/www.disneyplus.com\/series\/hawkeye\/11Zy8m9Dkj5l\">Hawkeye<\/a><\/li>\n      <li><a href=\"https:\/\/www.disneyplus.com\/movies\/black-widow\/3VfTap90rwZC\">Black Widow<\/a><\/li>\n      <li><a href=\"https:\/\/www.disneyplus.com\/movies\/shang-chi-and-the-legend-of-the-ten-rings\/5GyV9sf9Y041\">Shang-Chi<\/a><\/li>\n      <li><a href=\"https:\/\/www.disneyplus.com\/series\/the-book-of-boba-fett\/57TL7zLNu2wf\">The Book of Boba Fett<\/a> (*Coming soon!)<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li><a href=\"https:\/\/kotaku.com\/xbox-head-explains-console-shortages-will-continue-into-1847787478\">Console shortage<\/a> got me Xbox-less.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li><a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA\/\">TSLA<\/a> volatility has been nice for some weekly gainz.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Thanksgiving has come and gone - but <a href=\"https:\/\/www.cheeseshopwilliamsburg.com\/house-dressing\/\">The Cheese Shop\u2019s House Dressing<\/a> is forever (delicious).<\/li>\n<\/ul>\n","pubDate":"Wed, 01 Dec 2021 00:30:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2021\/12\/01\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/12\/01\/log"},{"title":"Captain's Log, Entry: November 1, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>October was a busy month for me and as a result, mostly unproductive in terms of content for the site. I do have a substantial piece on <a href=\"https:\/\/owasp.org\/www-community\/Threat_Modeling\">Threat Modeling<\/a> in the works so <em>stay tuned<\/em>!<\/p>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li><a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/09\/01\/log#what-im-learning\">Once again<\/a>, I recently served as a <a href=\"https:\/\/www.sans.org\/\">SANS<\/a> virtual TA (vTA) for <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/intrusion-detection-in-depth\/\">SEC503<\/a>. This was, and has remained, <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec503-intrusion-detection-in-depth-gcia-sans\">my favorite SANS course<\/a> - I learn a lot each time I take this training. Being able to help out other students along the way definitely helps reinforce the concepts as well!<\/li>\n<\/ul>\n\n<h6 id=\"the-shellsharks-podcast\">The Shellsharks Podcast<\/h6>\n<ul>\n  <li>For now, I plan on doing <a href=\"https:\/\/shellsharks.com\/podcast\">the show<\/a> <strong>monthly<\/strong> (given the wild assortment of other responsibilities and projects I have underway right now). I\u2019ll also add that taking the time to consistently find guests for the podcast is not something I had properly allocated time and mental cycles for.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>One of my areas of professional growth lately has been in the realm of <em>manual code review<\/em>. I\u2019ve been using <a href=\"https:\/\/vladtoie.gitbook.io\/secure-coding\/\">this resource<\/a> as a means to help propel that learning. My experience prior to now has really been more in <em>manually<\/em> reviewing <a href=\"https:\/\/owasp.org\/www-community\/Source_Code_Analysis_Tools\">SAST<\/a> results, which is certainly different than pure manual review.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<p><em>Definitely a good month for gadget-ing\u2026<\/em><\/p>\n\n<ul>\n  <li>\n    <p>I recently picked up a pair of <a href=\"https:\/\/www.philips-hue.com\/en-us\/p\/hue-white-and-color-ambiance-play-light-bar-double-pack\/7820230U7#overview\">Hue Play Light Bars<\/a> to add some additional lighting behind my upper monitor. Getting these at the proper angle to cast the light on the wall proved too annoying however so they have been mounted somewhat parallel to the wall instead. Though I might not get the best wall coverage this way, I really just need them to brighten up the space at night and in other dim lighting conditions (early morning and late afternoon).<\/p>\n  <\/li>\n  <li>\n    <p>In addition to the <a href=\"https:\/\/www.philips-hue.com\/en-us\/p\/hue-white-and-color-ambiance-play-light-bar-double-pack\/7820230U7\">Play Bars<\/a>, I also picked up the <em>very unique<\/em> <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle-morph\/dyson-lightcycle-morph-floor-black-brass\">Dyson Lightcycle Morph Floor Light<\/a> in the <em>Black\/Brass<\/em> finish. I\u2019ve written a <a href=\"#dyson-lightcycle-morph-floor-light-review\">small review<\/a> of the product as I have quite a few thoughts on it. <em>TL;DR<\/em> is I really like the lamp.<\/p>\n  <\/li>\n  <li>\n    <p>When I ordered the <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle-morph\/dyson-lightcycle-morph-overview\">Lightcycle Morph<\/a>, I also ordered the previous-gen Lightcycle, the <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle\/dyson-lightcycle-overview\">Task Light<\/a>. In my quest to brighten up my workspace I wanted to try a few things and I always thought the original Lightcycle looked really cool. I was hesitant in getting a desk lamp since though I have quite a large desk (it is actually a <a href=\"https:\/\/www.ikea.com\/us\/en\/p\/skogsta-dining-table-acacia-70419264\/\">dining room table<\/a>), I want as little objects on top of it as possible in order to reduce overall clutter. With that said, I thought the Task Light would look cool enough such that I wouldn\u2019t care. <em>Fast forwarding a bit<\/em>, I took delivery of the light and after setting it up on my desk I decided that I was going to return it. <em>Let me explain why.<\/em> First, it did inevitably take up more space on the desk than I was comfortable with. Second, It interfered (being on the left side of my desk) with my podcasting mic\u2019s <a href=\"https:\/\/www.amazon.com\/dp\/B081GD9LLM\/ref=twister_B085RTZN3G?_encoding=UTF8&amp;psc=1\">boom arm<\/a>. Third, I really didn\u2019t like the way it looked as much as I thought I would, especially when compared with the <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle-morph\/dyson-lightcycle-morph-floor-black-brass\">Morph light<\/a>, which I <em>really like<\/em>. As I have explained in my <a href=\"#dyson-lightcycle-morph-floor-light-review\">mini-review<\/a>, the Morph has a lot of utility that the Task Light simply doesn\u2019t have. I\u2019m even considering getting the <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle-morph\/dyson-lightcycle-morph-desk-black-brass\">desktop version<\/a> of the Morph to try out! More to come on that <em>if it every comes back in stock<\/em> =(.<\/p>\n  <\/li>\n  <li>\n    <p>Apple <a href=\"https:\/\/www.apple.com\/apple-events\/october-2021\/\">announced<\/a> their entirely new series of M1-laden <a href=\"https:\/\/www.apple.com\/macbook-pro\/\">MacBook Pro\u2019s<\/a>. I\u2019m not currently in the market for a new laptop but I\u2019m keeping my eye on what\u2019s happening with <a href=\"https:\/\/www.apple.com\/newsroom\/2020\/06\/apple-announces-mac-transition-to-apple-silicon\/\">Apple Silicon<\/a>. Seeing the overall performance and efficiency <a href=\"https:\/\/www.youtube.com\/watch?v=3MaccRf3tmI\">improvements<\/a> in computers using these chips it\u2019s plain to see that this is the future of Apple (and computing in general!). As much as I wanted to invest in an <a href=\"https:\/\/www.apple.com\/mac-pro\/\">Intel-based Mac Pro<\/a>, I\u2019m thinking more and more that a desktop-class, M1-based Mac may be what is really in store for me in the future.<\/p>\n  <\/li>\n  <li>\n    <p>I picked up the new <a href=\"https:\/\/www.apple.com\/apple-watch-series-7\/\">Apple Watch Series 7<\/a>. Coming from a <a href=\"https:\/\/shellsharks.com\/apple-watch-hardware#series-4\">Series 4<\/a>, I really haven\u2019t noticed that much <em>practical<\/em> difference. Sure, the screen is technically bigger but the main watch face I use doesn\u2019t take full advantage of this increase in size. There are a few new sensors onboard but I really won\u2019t use them with any meaningful frequency. It being a new device, the battery should be pretty fresh but honestly my Series 4 battery was still very good. The real improvement for me has to be the overall snappiness of the interface. This allows me to navigate around, fire off <a href=\"https:\/\/support.apple.com\/guide\/watch\/use-shortcuts-apd99050d435\/watchos\">Shortcuts<\/a> and generally use the watch with greater ease. For those who have a Series 4 through Series 6, I\u2019d recommend on holding off on this upgrade unless theres a particular feature that has been introduced in the last couple years that is particularly compelling to you.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Now that I\u2019ve picked up the new <a href=\"https:\/\/www.apple.com\/watch\/\">Apple Watch<\/a> (<a href=\"https:\/\/www.apple.com\/apple-watch-series-7\/\">Series 7<\/a>), I may start doing a bit more working out. Purchase of the new watch even gives you the <a href=\"https:\/\/www.apple.com\/apple-fitness-plus\/\">Fitness+<\/a> service <a href=\"https:\/\/www.apple.com\/promo\/pdf\/EN_US_Fitness_Plus_Promo_TandCs.pdf\">free for 3 months<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve been enjoying the second season of <a href=\"https:\/\/tv.apple.com\/us\/show\/the-morning-show\/umc.cmc.25tn3v8ku4b39tr6ccgb8nl6m\">The Morning Show<\/a>. It\u2019s not blowing my mind or anything but it\u2019s not the genre of show that really could anyways.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/www.imdb.com\/title\/tt1160419\/\">Dune<\/a> however\u2026 was REALLY good! I really want to watch the <a href=\"https:\/\/www.imdb.com\/title\/tt0087182\/\">original movie<\/a> and can\u2019t wait for whatever sequels are being cooked up.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/www.fxnetworks.com\/shows\/what-we-do-in-the-shadows\">What We Do In The Shadows<\/a> is hilarious. Only a few episodes in so far\u2026<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Haven\u2019t been doing any gaming - thinking of getting an <a href=\"https:\/\/www.xbox.com\/en-US\/consoles\/xbox-series-x\">Xbox Series X<\/a> to play <a href=\"https:\/\/www.xbox.com\/en-US\/games\/halo-infinite\">Halo Infinite<\/a> (and eventually <a href=\"https:\/\/diablo4.blizzard.com\/en-us\/\">Diablo 4<\/a>).<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li><a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA\/\">TSLA<\/a> to the moon! No, <strong>to Mars<\/strong>!!!! Thanks <a href=\"https:\/\/www.vox.com\/recode\/22750807\/hertz-tesla-uber-electric-car\">Hertz<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>\n    <p>Went on a Fall-sightseeing trip to ME, RI and NH. Lobster is expensive\u2026<\/p>\n  <\/li>\n  <li>\n    <p>Did the <a href=\"https:\/\/www.hikingupward.com\/gwnf\/bigschloss\/\">Big Schloss<\/a> hike and saw some really impressive Autumn-ey-ness. I found the hike using the site <a href=\"https:\/\/www.hikingupward.com\/\">Hiking Upward<\/a> which has a great <a href=\"https:\/\/www.hikingupward.com\/maps\/\">search function<\/a> which can help you find hikes given a number of different criteria including length, views, location, etc\u2026 Definitely check it out if you are in MD, NC, PA, VA or WV!<\/p>\n  <\/li>\n<\/ul>\n\n<hr \/>\n\n<h2 id=\"dyson-lightcycle-morph-floor-light-review\">Dyson Lightcycle Morph Floor Light Review<\/h2>\n\n<p>I recently took delivery of and set up the <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle-morph\/dyson-lightcycle-morph-floor-black-brass\">Dyson Lightcycle Morph Floor Light<\/a> in the <em>Black\/Brass<\/em> finish. This light had been on my radar for a while now as I thought it was a really unique and cool looking gadget. Of course at <strong>849.99<\/strong>, the price was certainly a bit steep for what, at the end of the day, <em>is just a lamp<\/em>. Below I cover the good and the bad of this lamp from my perspective\u2026<\/p>\n\n<h3 id=\"the-good\">The Good<\/h3>\n<ul>\n  <li>\n    <p>The physical setup of the light is dead simple. You need only get it out of the box, attach the pole to the base and then plug it in! Connecting the light to <a href=\"https:\/\/apps.apple.com\/us\/app\/dyson-link\/id993135524\">the app<\/a> is a little more involved (it requires Bluetooth), but still relatively easy.<\/p>\n  <\/li>\n  <li>\n    <p>I <em>really love<\/em> the design of the lamp.<\/p>\n  <\/li>\n  <li>\n    <p>The light can get really bright, up to 850 lumens and can range from a very energizing, cool light (6500K) to a really relaxing warm light (2700K).<\/p>\n  <\/li>\n  <li>\n    <p>The lamp is very adjustable (hence the name: \u201c<strong>Morph<\/strong>\u201d) as you can angle it in any direction from straight up\/down to a full 360 rotation. Couple this with the lighting modes described above and you can see this light is immensely versatile. I can illuminate the surface of my desk if I am reading, shine it directly at an adjacent wall to generally brighten up my space, dim the lights to provide a more relaxed mood, etc\u2026 The scenes that can be set are pretty endless!<\/p>\n  <\/li>\n  <li>\n    <p>A really cool feature of the light is you can rotate the light such that it points directly down into the stem of the lamp. Here the light will illuminate the perforated stem and create a very cool ambient light mode where you just have a glowing pillar. Very cool for chilling out!<\/p>\n  <\/li>\n  <li>\n    <p>The <a href=\"https:\/\/apps.apple.com\/us\/app\/dyson-link\/id993135524\">Dyson Link<\/a> app offers a <em>sync mode<\/em> where the lamp will adjust it\u2019s warmth and intensity based on the ambient light in the room and the time of day. This allows the light to adjust automatically based on the current settings of the room. Modern HomeKit lights have a very similar feature (Adaptive Lighting) so in this way they can all stay relatively in sync!<\/p>\n  <\/li>\n  <li>\n    <p>Since this lamp is a floor lamp rather than a desk lamp, it keeps my desk from accumulating additional clutter. I like having a clean desk where possible so this is great!<\/p>\n  <\/li>\n  <li>\n    <p>Returning a Dyson product is a very simple process. The team responsible for returns are very prompt, provide free returns and will notify you of the status all along the way. (I ordered a <a href=\"https:\/\/www.dyson.com\/lighting\/task-lighting\/dyson-lightcycle\/dyson-lightcycle-overview\">Task Light<\/a> and did not end up keeping it.)<\/p>\n  <\/li>\n<\/ul>\n\n<h3 id=\"the-bad\">The Bad<\/h3>\n<ul>\n  <li>\n    <p>The price. ~$850 for a <em>lamp<\/em> is rough.<\/p>\n  <\/li>\n  <li>\n    <p>Buggy connection over Bluetooth. When attempting to interact with the light using the <a href=\"https:\/\/apps.apple.com\/us\/app\/dyson-link\/id993135524\">mobile app<\/a>, I often have to force-quit the app and restart it for the Bluetooth connection to work such that I can control the light remotely. Also, since the connection is over Bluetooth, I am unable to control the light when out of Bluetooth range.<\/p>\n  <\/li>\n  <li>\n    <p>No HomeKit integration. The rest of the lighting in my <a href=\"https:\/\/shellsharks.com\/desk-setup-2021\">desk setup<\/a> is controllable over HomeKit. This isn\u2019t a huge deal but it does add an extra step when trying to get my lighting scene set at any given time.<\/p>\n  <\/li>\n  <li>\n    <p>There are some touch controls on the lamp arm. These are a little difficult to control as the arm itself is very sensitive and will rotate with very little force applied. This means you need to hold the arm in place while you adjust the settings, otherwise the arm will rotate. The metal portion of the lamp arm closest to the light bulb will actually get pretty hot, so if you attempt to hold the lamp arm in place you run the risk of potential light burns (or at least experience some discomfort). The touch-based controls nearest the light (on the black plastic portion of the arm) are very sensitive, so if you accidentally brush these, you may change the setting on the light. This makes adjusting the light settings a very delicate operation as there is only a small part of the lamp arm that you can touch without accidentally changing something or (very slightly) burning yourself.<\/p>\n  <\/li>\n  <li>\n    <p>The lamp sports a movement sensor, the purpose of which is to turn on when movement is detected and turn off after a certain period of time when movement is not detected. In theory this is a cool feature but in reality, when sitting at your desk for long periods of time, the light will turn off even though you are still sitting there. This feature is easily disabled.<\/p>\n  <\/li>\n  <li>\n    <p>When I first set the lamp up, I believed there was an issue with the device so I initiated a call to <a href=\"https:\/\/www.dyson.com\/support\/contact-us\">Dyson\u2019s customer support<\/a>. Their (presumably Tier 1) customer support associate was truly dreadful to speak to. They were overly invasive in the information they needed from me in order to help troubleshoot my issue, they were not knowledgeable at all about the product in question, and they took forever to respond. Further, I opened the support session directly via the <a href=\"https:\/\/apps.apple.com\/us\/app\/dyson-link\/id993135524\">app<\/a> which is incredibly fragile in actually keeping the session alive. If you navigate away from the page or close the app, the session is ended and you lose all your progress (you\u2019re lucky if you actually make any progress with that support team though).<\/p>\n  <\/li>\n<\/ul>\n\n<p>Ultimately, the good outweighed the bad for me and I intend on keeping the light!<\/p>\n\n","pubDate":"Mon, 01 Nov 2021 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/11\/01\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/11\/01\/log"},{"title":"Captain's Log, Entry: October 1, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>SANS. <em>SANS<\/em>! <strong>SANS<\/strong>!! (and some other stuff)<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve published my <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec450-blue-team-fundamentals-security-operations-and-analysis-gsoc-sans\">SEC450 \/ GSOC review<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>My inventory of <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec blogs<\/a> is approaching <strong>1500<\/strong> individual sites. This is courtesy of many additions from <a href=\"https:\/\/www.reddit.com\/r\/ReverseEngineering\/\">r\/reverseengineering<\/a> as well as from <a href=\"https:\/\/pentester.land\/list-of-bug-bounty-writeups.html\">Pentester Land<\/a>.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>I (still) have an extra <a href=\"https:\/\/www.giac.org\/certification\/security-operations-certified-gsoc\">GIAC GSOC<\/a> practice exam voucher to giveaway. I tried to post a giveaway on <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/\">r\/netsecstudents<\/a> but it was removed by the mods for some reason. Will need to try again sometime soon before it expires.<\/li>\n<\/ul>\n\n<h6 id=\"the-shellsharks-podcast\">The Shellsharks Podcast<\/h6>\n<ul>\n  <li>The <a href=\"https:\/\/shellsharks.podbean.com\/e\/analyzing-the-owasp-top-10-2021\/\">newest episode<\/a> of <a href=\"https:\/\/shellsharks.com\/podcast\">The Shellsharks Podcast<\/a> just went live. It is a (relatively) in-depth discussion on the new <a href=\"https:\/\/owasp.org\/Top10\/\">OWASP Top 10<\/a> for 2021.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve passed the <a href=\"https:\/\/www.giac.org\/certification\/security-operations-certified-gsoc\">GSOC<\/a> exam!<\/p>\n  <\/li>\n  <li>\n    <p>Still trying to make time for <a href=\"https:\/\/elearnsecurity.com\/blog\/become-a-web-application-penetration-tester\/\">eWAPT<\/a>\u2026<\/p>\n  <\/li>\n  <li>\n    <p>Still planning on starting the <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">Advanced Web Attacks and Exploitation<\/a> (AWAE\/OSWE) course from <a href=\"https:\/\/www.offensive-security.com\">OffSec<\/a> in October sometime.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>\n    <p>Apple\u2019s <a href=\"https:\/\/www.apple.com\/apple-events\/september-2021\/\">Fall iPhone\/general hardware event<\/a> happened and my first impressions (and the general impressions of the tech media from what I could tell) was that this event was on the boring side. With that said, I did purchase the new <a href=\"https:\/\/www.apple.com\/iphone-13-pro\/\">iPhone 13 Pro<\/a> Max and am considering the <a href=\"https:\/\/www.apple.com\/apple-watch-series-7\/\">Watch Series 7<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019ve signed up for the <a href=\"https:\/\/www.apple.com\/shop\/iphone\/iphone-upgrade-program\">iPhone Upgrade Program<\/a>. Basically I just want the easiest way to upgrade to the new <a href=\"https:\/\/www.apple.com\/iphone\/\">iPhone<\/a> each year. <a href=\"https:\/\/www.youtube.com\/watch?v=uelA7KRLINA\">This is the way<\/a>.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>A bunch of interesting movies and TV shows are on my radar (<a href=\"https:\/\/tv.apple.com\/us\/show\/foundation\/umc.cmc.5983fipzqbicvrve6jdfep4x3\">Foundation<\/a>, <a href=\"https:\/\/en.wikipedia.org\/wiki\/Dune_(2021_film)\">Dune<\/a> 2021, <a href=\"https:\/\/www.theverge.com\/2021\/8\/17\/22628917\/star-wars-visions-trailer-anime-anthology-series-disney-plus\">Star Wars Visions<\/a>).<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n\n<ul>\n  <li>It finally happened! I am now a member of the <a href=\"https:\/\/www.thebruery.com\/pages\/society-hoarders\">Hoarders Society<\/a>.<\/li>\n<\/ul>\n","pubDate":"Fri, 01 Oct 2021 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/10\/01\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/10\/01\/log"},{"title":"Captain's Log, Entry: September 1, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>Learning a lot, and I <em>really<\/em> <a href=\"#a-rant-on-traditional-resumes\">don\u2019t like traditional resumes<\/a>.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>I\u2019ve published my <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec460-enterprise-and-cloud--threat-and-vulnerability-assessment-geva-sans\">SEC460 \/ GEVA review<\/a> as well as a short piece on the multitude of <a href=\"https:\/\/shellsharks.com\/cybersecurity-role-map#title\">cybersecurity roles<\/a> which exist in the infosec industry.<\/li>\n  <li>My inventory of <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec blogs<\/a> has surpassed <strong>800<\/strong> individual sites - <em>cruising towards 1k in no time<\/em>.<\/li>\n  <li>I\u2019ve published a <a href=\"https:\/\/shellsharks.com\/resume\">digital version<\/a> of my resume. This resume does not follow the <em>traditional<\/em> format. <a href=\"#a-rant-on-traditional-resumes\">More on this below<\/a>\u2026<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>Had an extra <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec460-enterprise-and-cloud--threat-and-vulnerability-assessment-geva-sans\">SEC460<\/a> practice exam voucher to giveaway. It was <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/p1buey\/giac_geva_sans_sec460_practice_test_giveaway\/\">snatched up<\/a> pretty quickly.<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<p>Continuing some <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/08\/01\/log#what-im-learning\">threads from last month<\/a>\u2026<\/p>\n\n<ul>\n  <li>\n    <p>I\u2019ve passed the <a href=\"https:\/\/www.giac.org\/certification\/enterprise-vulnerability-assessor-geva\">GEVA<\/a> exam with a 90+ score which qualifies me for the <a href=\"https:\/\/www.sans.org\/teach\/\">SANS instructor development program<\/a> for that particular course. I\u2019ve been interested in potentially becoming an instructor for SANS for some time now and this may be the course that I decide to pursue.<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019ve been pretty distracted and unable to make any meaningful progress on my <a href=\"https:\/\/elearnsecurity.com\/blog\/become-a-web-application-penetration-tester\/\">eWAPT certification effort<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>Speaking of distractions, I\u2019m currently prepping for the <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/blue-team-fundamentals-security-operations-analysis\/\">SEC450<\/a> \/ <a href=\"https:\/\/www.giac.org\/certification\/security-operations-certified-gsoc\">GSOC<\/a> exam which was just released.<\/p>\n  <\/li>\n  <li>\n    <p>Looking forward to the <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">Advanced Web Attacks and Exploitation<\/a> (AWAE\/OSWE) course from <a href=\"https:\/\/www.offensive-security.com\">OffSec<\/a>. Planning to start sometime in October.<\/p>\n  <\/li>\n  <li>\n    <p>I recently served as a <a href=\"https:\/\/www.sans.org\">SANS<\/a> virtual TA (vTA) for <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/intrusion-detection-in-depth\/\">SEC503<\/a>. That class has always been a beast and being a quasi-instructor for it is <em>no joke<\/em>. The added difficultly was TA\u2019ing in a completely virtual setting where I could not see students\u2019 screens or help them troubleshoot in person.<\/p>\n  <\/li>\n  <li>\n    <p>I recently participated in the <a href=\"https:\/\/www.sans.org\/cyber-ranges\/netwars-tournaments\/core\/\">Core NetWars Tournament<\/a> at <em>SANS Offensive Operations West 2021<\/em>. This is the 7th iteration of Core NetWars, the theme of which was <a href=\"https:\/\/en.wikipedia.org\/wiki\/Internet_of_things\">IoT<\/a>. It was fun but certainly challenging. It being my first time participating in this iteration, I was competing in the \u201cnewbies\u201d pool. I placed 4th in that bracket and as a result won not only a shiny NetWars <a href=\"https:\/\/en.wikipedia.org\/wiki\/Internet_of_things\">champion coin<\/a> but also punched a ticket to the annual NetWars <strong><a href=\"https:\/\/know.bishopfox.com\/foxtales\/return-to-netwars\">Tournament of Champions<\/a><\/strong> which typically takes place annually at SANS <a href=\"https:\/\/www.sans.org\/cyber-security-training-events\/cyber-defense-initiative-2021\/\">CDI<\/a>. For an added bonus, this particular NetWars event was also a <em><a href=\"https:\/\/www.sans.org\/blog\/coinage-the-sans-pen-testing-coins-backstory\/\">Coin-A-Palooza<\/a><\/em> event where I was able to win a couple SANS course <a href=\"https:\/\/securityboulevard.com\/2020\/04\/sans-challenge-coins-the-ultimate-recognition-to-elite-cybersecurity-professionals\/\">challenge coins<\/a> from previous classes I have completed. <em>Love the bling<\/em>!<\/p>\n  <\/li>\n<\/ul>\n\n<center>\n<img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/coins2021.jpeg\" width=\"500px\" \/>\n<br \/><br \/>\n<img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/NetWarsCore-FinalScoreBoard.png\" width=\"500px\" \/>\n<br \/><br \/>\n<\/center>\n\n<ul>\n  <li>In the process of sharing some links to content on my site, I noticed there was an issue with the image populating correctly as part of that share. Peeking into my site source I noticed the \u201c<em>og:\u2026<\/em>\u201d tags and did a little research on what they were and how they are used. This led me to learning a lot more about <a href=\"https:\/\/ogp.me\">The Open Graph protocol<\/a>.\n    <ul>\n      <li>If you\u2019re interested in updating the OGP metadata for previously shared links on <a href=\"https:\/\/www.linkedin.com\/\">Linkedin<\/a>, check out the <a href=\"https:\/\/www.linkedin.com\/post-inspector\/inspect\/\">post-inspector utility<\/a>.<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li><a href=\"https:\/\/www.cdc.gov\/coronavirus\/2019-ncov\/variants\/delta-variant.html\">Delta variant<\/a> is really messing with my gym-ing. <em>Ugh<\/em>.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>\n    <p>Finished up the most recent season of <a href=\"https:\/\/www.disneyplus.com\/series\/the-bad-batch\/4gMliqFxxqXC\">The Bad Batch<\/a> on <a href=\"https:\/\/www.disneyplus.com\/home\">Disney+<\/a>. Enjoyable but not mind-blowing.<\/p>\n  <\/li>\n  <li>\n    <p>Have watched a few interesting movies (new and old) lately\u2026 <a href=\"https:\/\/www.imdb.com\/title\/tt6723592\/\">Tenet<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt8772262\/\">Midsommar<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt0128442\/\">Rounders<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt5034838\/\">Godzilla vs Kong<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt0124298\/\">Blast from the Past<\/a>, <a href=\"https:\/\/www.imdb.com\/title\/tt10016180\/\">The Little Things<\/a>. Tenet was really cool and equally confusing. I think it deserves at least a second watch.<\/p>\n  <\/li>\n  <li>\n    <p>A <a href=\"https:\/\/www.theverge.com\/2021\/8\/17\/22628917\/star-wars-visions-trailer-anime-anthology-series-disney-plus\">Star Wars anime<\/a>? Ummmm\u2026 <strong>YES<\/strong>.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Still <i class=\"ph ph-heart\"><\/i> @ <a href=\"https:\/\/www.tesla.com\/models\">Model S Plaid<\/a>.<\/li>\n<\/ul>\n\n<center><i class=\"ph-bold ph-plus lg\"><\/i><\/center>\n\n<h3 id=\"a-rant-on-traditional-resumes\">A Rant on Traditional Resumes<\/h3>\n\n<p>I recently re-thought the visuals and content-approach for my professional resume, the outcome of which you can find a <a href=\"https:\/\/shellsharks.com\/resume\">digital version of on my site<\/a>. The big difference between this <em>new<\/em> approach and the <em>traditional<\/em> approach is I have not included the <em>list-of-each-job-in-chronological-order-with-what-I-did-at-each-place<\/em> <strong>stuff<\/strong> that you typically see. Instead, I have summarized the projects and skills that best summarize my experience and included an alphabetical list of places I have worked. Let me explain why I don\u2019t like the traditional approach\u2026<\/p>\n\n<ul>\n  <li>\n    <p>I find that the focus being on <strong>where you\u2019ve worked<\/strong> as opposed to <em>what your achievements are<\/em> is really just a means by which prospective hiring teams can discriminate against you or otherwise discount valuable experience you have because they don\u2019t like or know the company that that experience was associated with. That\u2019s not to say that 5 years of experience at Google is the same as 5 years experience at some small company, but in the end, I\u2019ve never been in an actual interview where it\u2019s seemed like I\u2019ve gotten points based on where I\u2019ve worked in the past. Ultimately, I still needed to prove my knowledge in the interview and that can be done by anyone with the skills\/confidence required, not just by those with the \u201cbest\u201d companies listed.<\/p>\n  <\/li>\n  <li>\n    <p><strong>Total years experience<\/strong>. This <em>is<\/em> and <em>has always been<\/em> a dreadful way of judging someone\u2019s relative skill. There are <em>plenty<\/em> of 10+ year pros who can\u2019t do half of what some talented up-starts with 3 years experience can do. In a traditional resume, you have to list time and duration for <em>every<\/em>. <em>single<\/em>. <em>job<\/em>. This artificial handicap serves only to limit otherwise equally\/more-talented younger professionals.<\/p>\n  <\/li>\n  <li>\n    <p>Speaking of \u201ctotal years experience\u201d, what about having to <strong>include jobs you held 7+ or even 10+ years ago<\/strong>? This is often expected \/ required on traditional resumes but does little to help bolster the way you market yourself. Companies should care about what relevant skills you have, not what you were up to <em>that<\/em> long ago. This serves only as a way for companies to potentially profile or judge you based on what you did in the past. For example, let\u2019s say you served on a help desk 10 years ago, maybe a company will think negatively of that experience. Why share your entry-level experience when they are looking for what you have done at a more senior level?<\/p>\n  <\/li>\n  <li>\n    <p><strong>Project\/job held duration<\/strong>. This is one of my <em>least<\/em> favorite things that is expected on traditional resumes. The point here I guess is that companies want to know if you\u2019re some sort of serial job hopper. But there are <em>LOTS<\/em> of reasons to leave a job, many of which do not or <em>should not<\/em> reflect poorly on a prospective candidate. But, despite this, I think most prospective hiring panels see short stints on a resume and think the worst, even in areas (DC metro anyone?) where short-term consulting gigs are not only common, but potentially the norm!<\/p>\n  <\/li>\n<\/ul>\n\n<p>Instead of having to conform to this exact resume format, why not market yourself how <em>YOU<\/em> want to market yourself? Traditional resume formats are designed to put <em>you<\/em> at a disadvantage, revealing everything about yourself while the company has to reveal nothing about itself. Does the company you\u2019re applying for have to reveal everyone it has fired and why? Does it have to reveal past or future lay-off plans? Though some companies are more transparent than others, all of them - and I mean 100% of them reveal less about themselves to a prospective employee as you must divulge to them. A background check is a good example of this, when\u2019s the last time you ran a background check on a company? We, as a society of professionals need to change our mindset on resumes, and begin to collectively accept non-standard resume formats.<\/p>\n\n","pubDate":"Wed, 01 Sep 2021 01:30:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/09\/01\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/09\/01\/log"},{"title":"Captain's Log, Entry: August 1, 2021","author":"mike@shellsharks.com (Mike)","description":"<p><em>It\u2019s been a busy month<\/em>\u2026<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>\n    <p>The first annual <a href=\"https:\/\/shellsharks.com\/sharkweek\">&gt;Shark Week<\/a> was held July 11-17! It was a bit hectic getting everything out on time given everything else I had going on (work, <a href=\"#fitness\">fitness challenge<\/a> and <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/enterprise-cloud-threat-vulnerability-assessment\/\">training<\/a>) but I had a lot of fun and met some new people in the community! <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/ojgtzo\/a_weeklong_celebration_of_infosec_and_more\/\">Reddit was okay on it<\/a>. I\u2019ll be trying to do this every year for sure. However, next time I will have some <a href=\"https:\/\/shellsharks.com\/ocean\">things prepared<\/a> leading up to it. <strong>True Story<\/strong>: I literally thought of the idea <em>the day before<\/em> <a href=\"https:\/\/go.discovery.com\/tv-shows\/shark-week\/\">&gt;Shark Week<\/a> began - so I was <em>a bit<\/em> rushed.<\/p>\n  <\/li>\n  <li>\n    <p>I hosted a (non-Shellsharks-related) <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/olgnwb\/10_years_in_infosec_20_industry_certs_including\/\">AMA on Reddit<\/a> and the response was pretty great!<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve been thinking of making some Shellsharks-themed shirts\u2026 have <a href=\"https:\/\/shellsharks.com\/about?about=mike\">some ideas<\/a> but no final design.<\/p>\n  <\/li>\n  <li>\n    <p>I was invited to join the \u201c<a href=\"https:\/\/discord.gg\/65matrA9Bd\">Introduction to Coding\/Hacking and CyberSecurity Discord<\/a>\u201d as a community mentor. <em>So I did<\/em>. You can find me in there!<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019ve got a pretty exciting project in the works. Can\u2019t say <a href=\"https:\/\/shellsharks.com\/ocean\">much else<\/a> but <strong>stay tuned<\/strong>!<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>I dropped two new episodes of the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a>. <em>Check \u2018em out<\/em>!\n    <ul>\n      <li><em>Episode 4<\/em> - <a href=\"https:\/\/shellsharks.podbean.com\/e\/burnout-motivation\/\">Burnout &amp; Motivation<\/a><\/li>\n      <li><em>Episode 5<\/em> - <a href=\"https:\/\/shellsharks.podbean.com\/e\/blogging-wgu\/\">Blogging &amp; WGU<\/a>\n<br \/><br \/><\/li>\n    <\/ul>\n  <\/li>\n  <li>I\u2019ve been thinking of introducing the idea of \u201cseasons\u201d into the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a>. Each season would have a <em>theme<\/em>. Season one\u2019s theme, (<em>for example<\/em>) could be something like \u201c<em>Getting Into Information Security<\/em>\u201d. Then, throughout that season, I would have a lot of podcast content focused on <em>that<\/em> subject. Just a nugget of an idea at this point\u2026<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>\n    <p>I served as a <a href=\"https:\/\/www.sans.org\/work-study-program\/\">moderator<\/a> for <a href=\"https:\/\/www.sans.org\/work-study-program\/\">SANS SEC460: Enterprise and Cloud | Threat and Vulnerability Assessment<\/a> @ SANSFIRE (Virtual Edition 2021). The course was really (and I can\u2019t stress this enough), <em>really<\/em> good. I consider myself a bit of a <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">Vulnerability Management\/Assessment<\/a> expert and I <em>still<\/em> learned so much. The instructor (and course author), <a href=\"https:\/\/www.sans.org\/profiles\/matthew-toussain\/\">Matt Toussain<\/a> did a fantastic job. I <em>definitely<\/em> recommend this course. Prepping for the certification exam (<a href=\"https:\/\/www.giac.org\/certification\/enterprise-vulnerability-assessor-geva\">GEVA<\/a>) now!<\/p>\n  <\/li>\n  <li>I\u2019ve been interested in getting more experience in <strong>Threat Modeling<\/strong>. If you didn\u2019t know, there are a <em>ton<\/em> of methodologies\u2026\n    <ul>\n      <li><strong><a href=\"https:\/\/web.archive.org\/web\/20070303103639\/http:\/\/msdn.microsoft.com\/msdnmag\/issues\/06\/11\/ThreatModeling\/default.aspx\">STRIDE<\/a><\/strong> : Spoofing, Tampering, Repudiation, Information Disclosure, Denial-of-Service, Elevation of Privilege<\/li>\n      <li><strong><a href=\"https:\/\/docs.microsoft.com\/en-us\/archive\/blogs\/david_leblanc\/dreadful\">DREAD<\/a><\/strong> : Damage, Reproducibility, Exploitability, Affected users, Discoverability<\/li>\n      <li><strong><a href=\"https:\/\/about.gitlab.com\/handbook\/security\/threat_modeling\/\">PASTA<\/a><\/strong> (Process for Attack Simulation and Threat Analysis)<\/li>\n      <li><strong><a href=\"https:\/\/www.linddun.org\">LINDDUN<\/a><\/strong> : Linkability, Identifiability, Non-repudiation, Detectability, Disclosure of information, Unawareness, Non-compliance<\/li>\n      <li><strong><a href=\"https:\/\/resources.sei.cmu.edu\/library\/asset-view.cfm?assetid=516617\">hTMM<\/a><\/strong> : Combines <em>Security Cards<\/em>, <em>Persona non Grata<\/em> and <em>STRIDE<\/em>.<\/li>\n      <li><strong><a href=\"http:\/\/www.octotrike.org\">Trike<\/a><\/strong><\/li>\n      <li><strong><a href=\"https:\/\/threatmodeler.com\/threat-modeling-methodologies-vast\/\">VAST<\/a><\/strong> (Visual, Agile and Simple Threat modeling)<\/li>\n      <li><strong><a href=\"https:\/\/www.itgovernanceusa.com\/files\/Octave.pdf\">OCTAVE<\/a><\/strong> (Operationally Critical Threat, Asset and Vulnerability Evaluation)<\/li>\n      <li>\u2026<em>to name a few<\/em>\u2026\n<br \/><br \/><\/li>\n    <\/ul>\n  <\/li>\n  <li>\n    <p>In addition to <em>threat modeling<\/em>, I\u2019ve been looking to strengthen my overall AppSec-fu. Reading through <a href=\"https:\/\/owasp.org\">OWASP\u2019s<\/a> <strong>Application Security Verification Standard<\/strong> (<a href=\"https:\/\/owasp.org\/www-project-application-security-verification-standard\/\">ASVS<\/a> v4) is one part of that effort.<\/p>\n  <\/li>\n  <li>\n    <p><em>A long time ago<\/em>, I purchased the <a href=\"https:\/\/elearnsecurity.com\">eLearnSecurity<\/a>, <a href=\"https:\/\/blog.elearnsecurity.com\/bundle-up-and-save-big-this-month.html\">\u201cAll Access Pass\u201d<\/a>. Shortly after purchasing, I managed to complete their <a href=\"https:\/\/elearnsecurity.com\/product\/ejpt-certification\/\">Penetration Testing Student<\/a> (PTS) and <a href=\"https:\/\/elearnsecurity.com\/blog\/ptpv4-launch\/\">Penetration Testing Professional<\/a> (PTP) courses\/certifications - but for the last 5 years, have not really touched any of the other bundled content. After all this time, I\u2019ve re-opened the <a href=\"https:\/\/www.caendra.com\">legacy console<\/a> and have started <a href=\"https:\/\/shellsharks.com\/sqlmap-tamper-magic#title\">hacking away<\/a> at the <strong><a href=\"https:\/\/elearnsecurity.com\/blog\/become-a-web-application-penetration-tester\/\">Web Application Penetration Testing<\/a><\/strong> course yet again. Once I (<em>hopefully<\/em>) obtain my <a href=\"https:\/\/elearnsecurity.com\/product\/ewpt-certification\/\">eWPT<\/a> cert, I can then <a href=\"https:\/\/blog.elearnsecurity.com\/the-web-application-pentester-training-path.html\">proceed<\/a> to the more advanced <strong>Web Application Penetration Testing eXtreme<\/strong> course, <a href=\"https:\/\/blog.elearnsecurity.com\/focus-on-the-web-application-penetration-testing-extreme-training-course-waptx.html\">WAPTX<\/a>!<\/p>\n  <\/li>\n  <li>I\u2019ve just finished up <a href=\"https:\/\/www.sans.org\/work-study-program\/\">moderating<\/a> the <a href=\"https:\/\/www.sans.org\">SANS<\/a> course, <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/blue-team-fundamentals-security-operations-analysis\/\">SEC450: Blue Team Fundamentals: Security Operations and Analysis<\/a> @ SANS Cyber Security East. Though I don\u2019t consider myself a \u201cblue-teamer\u201d, and this course is a <em>400-level<\/em> course, I found the material to be incredibly high-value and <em>immensely<\/em> thorough. The instructor, <a href=\"https:\/\/www.sans.org\/profiles\/john-hubbard\/\">John Hubbard<\/a>, is really top-notch. I recommend you check out his podcast, <a href=\"https:\/\/www.sans.org\/podcasts\/blueprint\/\">Blueprint<\/a>.\n    <ul>\n      <li>It\u2019s worth mentioning that this course has a certification (<a href=\"https:\/\/www.giac.org\/certification\/security-operations-certified-gsoc\">GSOC<\/a>) coming out in August. I\u2019m looking forward to adding it to <a href=\"https:\/\/www.giac.org\/certified-professional\/michael-sass\/152023\">my collection<\/a>!\n<br \/><br \/><\/li>\n    <\/ul>\n  <\/li>\n  <li>\n    <p>In addition to all my other AppSec-ing, I am eyeing the <a href=\"https:\/\/www.offensive-security.com\">Offensive Security<\/a> WEB-300 course, <a href=\"https:\/\/www.offensive-security.com\/awae-oswe\/\">Advanced Web Attacks and Exploitation<\/a> (AWAE\/OSWE). I\u2019m hoping to start (and finish) it sometime before the end of the year. The OSWE would be the first in my pursuit of the epic (and <em>new<\/em>) <a href=\"https:\/\/help.offensive-security.com\/hc\/en-us\/articles\/4403282452628-What-is-OSCE3-\">OSCE3<\/a> certification from OffSec.<\/p>\n  <\/li>\n  <li>\n    <p>In preparation for the <a href=\"https:\/\/www.offsec.com\/courses\/web-300\/\">AWAE\/OSWE<\/a>, I\u2019ve joined the <a href=\"https:\/\/discord.gg\/N7TZHxREHU\">Offensive Security Discord<\/a>. I\u2019m in <a href=\"https:\/\/shellsharks.com\/getting-into-information-security#online-communities\">way too many infosec Discords<\/a>\u2026<\/p>\n  <\/li>\n  <li>As part of all this AppSec learning, I am working on a <em>web security compendium<\/em> of sorts. What form it will ultimately take and its <a href=\"https:\/\/shellsharks.com\/ocean\">release<\/a> date is <em>TBD<\/em>.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>There are <a href=\"https:\/\/9to5mac.com\/2021\/07\/26\/leaker-intel-ice-lake-xeon-w-3300-cpus-next-gen-mac-pro\/\">rumors of a refreshed Mac Pro w\/ Intel Ice Lake<\/a>. I\u2019ve been wanting to pick up a <a href=\"https:\/\/www.apple.com\/mac-pro\/\">Mac Pro<\/a> for a while now\u2026 <em>Who knows<\/em>!<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>\n    <p>I was victorious in the <a href=\"https:\/\/support.apple.com\/en-us\/HT207014\">Apple Watch fitness challenge<\/a> throw-down between myself and <a href=\"https:\/\/shellsharks.podbean.com\/e\/burnout-motivation\/\">some recent Podcast guests<\/a>. <em>Though I will say that the parameters of the challenge were somewhat contested<\/em>.<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019ve been playing a <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/07\/06\/log#fitness\">little more<\/a> basketball recently. I just hope the <a href=\"https:\/\/www.cdc.gov\/coronavirus\/2019-ncov\/vaccines\/fully-vaccinated-guidance.html\">Delta variant<\/a> doesn\u2019t completely ruin inside ball.<\/p>\n  <\/li>\n  <li>\n    <p>Picked up a gym membership. I\u2019m fortunate to have work pay for it so why not? Typically, I just play bball at the gym but have been trying my hand at weight-lifting.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>\n    <p>I finished up the <a href=\"https:\/\/www.imdb.com\/title\/tt9140554\/episodes?season=01\">first season<\/a> of <a href=\"https:\/\/www.disneyplus.com\/series\/loki\/6pARMvILBGzF\">Loki<\/a>. I really loved it. I\u2019m looking forward to <a href=\"https:\/\/www.marvel.com\/articles\/tv-shows\/loki-season-2-disney-plus-tom-hiddleston\">what comes next<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>Still watching <a href=\"https:\/\/www.disneyplus.com\/series\/the-bad-batch\/4gMliqFxxqXC\">The Bad Batch<\/a> on <a href=\"https:\/\/www.disneyplus.com\/home\">Disney+<\/a>. I am enjoying it but the episodes are starting to blur together a bit.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/tv.apple.com\/us\/show\/mythic-quest\/umc.cmc.1nfdfd5zlk05fo1bwwetzldy3\">MythicQuest<\/a> on <a href=\"https:\/\/www.apple.com\/apple-tv-plus\/\">Apple TV+<\/a> is back! I loved <a href=\"https:\/\/www.imdb.com\/title\/tt8879940\/episodes?season=1\">season one<\/a> and so far <a href=\"https:\/\/www.imdb.com\/title\/tt8879940\/episodes?season=2\">season two<\/a> is just as hilarious.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>\n    <p>It\u2019s been a long time since I played <a href=\"https:\/\/en.wikipedia.org\/wiki\/Halo_(franchise)\">Halo<\/a> and I don\u2019t even have a <a href=\"https:\/\/www.xbox.com\/en-US\/\">console<\/a>, but I\u2019m seriously thinking of picking one up to play <a href=\"https:\/\/www.xbox.com\/en-US\/games\/halo-infinite\">Halo Infinite<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019m patiently waiting for <a href=\"https:\/\/diablo4.blizzard.com\/en-us\/\">Diablo 4<\/a> to drop. In the meantime, <a href=\"https:\/\/diablo2.blizzard.com\/en-us\/\">Diablo 2 Resurrected<\/a> is coming soon\u2026<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve made a couple trips recently to <a href=\"https:\/\/www.stonetowerwinery.com\">Stone Tower Winery<\/a>. It has quickly become one of my favorite local spots due to the nice views and <a href=\"https:\/\/www.stonetowerwinery.com\/menu\">amazing BBQ ribs<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/www.barnhousebrewery.com\">Barnhouse Brewery<\/a> in Leesburg has <a href=\"https:\/\/www.barnhousebrewery.com\/current-menu\">really good beer<\/a>. I recently visited and had a great time.<\/p>\n  <\/li>\n  <li>\n    <p>Placed a nice-sized order at my favorite brewery, <a href=\"https:\/\/www.thebruery.com\">The Bruery<\/a>. I\u2019m hoping to level up from the <a href=\"https:\/\/www.thebruery.com\/pages\/reserve-society\">Reserve Society<\/a> to the <a href=\"https:\/\/www.thebruery.com\/pages\/society-hoarders\">Hoarders Society<\/a> but know no other way than to spend a lot of $$.<\/p>\n  <\/li>\n  <li>\n    <p>Never really been a coffee person but I\u2019ve been drinking some home-made <em>iced<\/em> coffee recently. Just not a fan of warm drinks\u2026<\/p>\n  <\/li>\n  <li>\n    <p><a href=\"https:\/\/www.tesla.com\">Tesla<\/a> recently released their <a href=\"https:\/\/www.tesla.com\/models\">Model S Plaid<\/a> and\u2026 <strong>I\u2019m in love<\/strong> <i class=\"ph ph-heart\"><\/i>. Watching <a href=\"https:\/\/www.youtube.com\/user\/marquesbrownlee\">MKBHD\u2019s<\/a> YouTube <a href=\"https:\/\/www.youtube.com\/watch?v=DyKQ7qtTJag\">plaid impressions video<\/a> didn\u2019t help.<\/p>\n  <\/li>\n<\/ul>\n","pubDate":"Sun, 01 Aug 2021 10:57:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/08\/01\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/08\/01\/log"},{"title":"Captain's Log, Entry: July 6, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>Episode 3 of The Shellsharks Podcast, Loki and some of the best beers.<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>I\u2019ve added <em>a lot<\/em> of additional \u201cabout me\u201d context to the <a href=\"https:\/\/shellsharks.com\/about\">about page<\/a>. Simply roll over the different elements in the <em>$whoami<\/em> section!<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>A new episode of the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast<\/a> was released. \u2018tis a good one!\n    <ul>\n      <li>Episode 3 - <a href=\"https:\/\/shellsharks.podbean.com\/e\/pentesting-chat-and-beer-chat\/\">Pentesting Chat (and Beer Chat)<\/a><\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>I normally don\u2019t use beta versions of iOS\/iPadOS\/MacOS but I couldn\u2019t help myself this year. I decided to install the <a href=\"https:\/\/beta.apple.com\/sp\/betaprogram\/\">public beta<\/a> of <a href=\"https:\/\/www.apple.com\/ipados\/ipados-preview\/\">iPadOS 15<\/a> mainly for the widgets-anywhere-on-the-home-screen feature. So far, it hasn\u2019t disappointed. I really like both the look and the utility of these widgets. I know my Android brethren out there will scoff at this but, yeah - iOS widgets are really useful and do so in style. I don\u2019t use that many - calendar, a to-do list, stock ticker, photos and weather are all that I\u2019m using right now.<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>I\u2019m <em>finally<\/em> back out on the court (at least one day a week now).<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been watching Disney\u2019s <a href=\"https:\/\/www.disneyplus.com\/series\/star-wars-the-clone-wars\/1wYXzjabXGVZ\">Clone Wars<\/a> spin-off, <a href=\"https:\/\/www.disneyplus.com\/series\/the-bad-batch\/4gMliqFxxqXC\">The Bad Batch<\/a> and have really been enjoying it. It\u2019s retains a lot of the silliness the original series brought but continues to delve into interesting elements of the Star Wars Universe, this time immediately after the rise of the Empire.<\/li>\n  <li>The <a href=\"https:\/\/www.disneyplus.com\/series\/loki\/6pARMvILBGzF\">Loki<\/a> show has also landed and after the first four episodes I am definitely hooked. The way this show ties in with the rest of the Marvel universe was really clever and Tom Hiddleston is as great and Loki-ish as ever.<\/li>\n  <li>Finally, I finished up season four of <a href=\"https:\/\/www.imdb.com\/title\/tt5834204\/\">The Handmaid\u2019s Tale<\/a>. Through four seasons this show has managed to stay pretty exciting. This season was particularly intense but I think that was in part due to my new parenthood status.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>I\u2019ve spun up an <a href=\"https:\/\/untappd.com\/user\/beersharks\">Untappd<\/a> account. You can check out my eclectic brew-tastes there.<\/li>\n  <li>Played some frisbee golf at <a href=\"https:\/\/spilmandgc.org\">Spilman Park<\/a> and <a href=\"https:\/\/www.jenkinsmountaindiscgolf.com\">Jenkins Mountain<\/a>. Jenkins Mountain was a new course for me and trying to do it after 18-holes at Spilman proved to be too much. The first couple holes of Jenkins Mountain were (at least to me) a little too difficult - though I plan to conquer it sometime soon. Besides the views of the Shenandoah Mountains, the best part of this course is that it begins right at the front door of <a href=\"https:\/\/www.jenkinsmountaindiscgolf.com\">Skyline Brewing<\/a> and by the time you get to hole 3 you find yourself at the <a href=\"https:\/\/www.jenkinsmountaindiscgolf.com\">Little Washington Winery<\/a>!<\/li>\n  <li>I made my way out to <a href=\"https:\/\/www.oldbusthead.com\">Old Bust Head<\/a> brewery. Though it\u2019s a little further away for me than many other breweries, I think they have the best beer of any place I have tried in the NoVA area. This trip did not disappoint as I had their <a href=\"https:\/\/www.oldbusthead.com\/buckland-mill-milk-stout\">Buckland Mill Milk Stout<\/a> and wow\u2026 it was not only easily the best milk stout I\u2019ve ever had but easily one of the best all around beers. Only twice have I ever drank a beer and thought to myself, this is the <em>perfect<\/em> incarnation of this type of beer. (The only other two times being with <a href=\"https:\/\/www.pilsnerurquell.com\">Pilsner Urquell<\/a> while in the Czech Republic and the <a href=\"https:\/\/www.trappistwestvleteren.be\/en\/age-gate?_target_path=\/en\/our-beers\/trappist-westvleteren-12\">Westvleteren 12<\/a> while in Belgium.)<\/li>\n  <li>Drove down to South Carolina (for the first time in like four years) and re-united with some family. It was a really great time. Great food and of course boiled peanuts!<\/li>\n<\/ul>\n","pubDate":"Tue, 06 Jul 2021 00:57:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/07\/06\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/07\/06\/log"},{"title":"Captain's Log, Entry: June 3, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>Podcasting, SANS-ing, brews and more\u2026<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>I\u2019ve been toying around with the idea of doing some <em>infosec-infused<\/em> <a href=\"https:\/\/www.twitch.tv\">Twitch<\/a> streaming. By \u201cinfosec-infused\u201d I mean <a href=\"#gaming\">playing a game of some kind<\/a> while having a casual infosec chat (as opposed to live-streaming myself doing a CTF or something). I\u2019m <a href=\"https:\/\/www.twitch.tv\/shellsharks\">shellsharks on Twitch<\/a> if you want to catch any of my future streams though!<\/li>\n  <li>I\u2019ve (finally) made the effort to configure my <a href=\"mailto:mike@shellsharks.com\">shellsharks domain email<\/a>. I\u2019ve used the <a href=\"https:\/\/www.zoho.com\">Zoho<\/a> free-tier for basic e-mail with my custom domain which I definitely recommend. So feel free to <a href=\"mike@shellsharks.com\">email me<\/a> anytime!<\/li>\n  <li>I <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/05\/05\/log\">mentioned in an earlier log entry<\/a> that I was on <a href=\"https:\/\/www.joinclubhouse.com\/\">Clubhouse<\/a>. I\u2019ve been thinking of doing some open-forum infosec chat rooms there. We\u2019ll see what engagement looks like with something like that.<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>So the <a href=\"https:\/\/shellsharks.com\/podcast\">podcast is live<\/a>! I\u2019ve got two episodes up and I think they\u2019ve gone pretty well. I\u2019m still working on finding some footing in terms of format and content but I plan to just discover that as I go.\n    <ul>\n      <li>Episode 1 - <a href=\"https:\/\/shellsharks.podbean.com\/e\/colonial-pipeline-hack-more\/\">Colonial Pipeline Hack &amp; More<\/a><\/li>\n      <li>Episode 2 - <a href=\"https:\/\/shellsharks.podbean.com\/e\/getting-into-infosec-part-i\/\">Getting Into Infosec (Part I)<\/a><\/li>\n    <\/ul>\n  <\/li>\n  <li>For hosting, I went with <a href=\"https:\/\/www.podbean.com\">PodBean<\/a> which I have been pretty happy with so far. Time will tell if I want to use them long term.<\/li>\n  <li><a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/nfix4v\/introducing_the_shellsharks_podcast\/\">Reddit wasn\u2019t overly responsive to the podcast<\/a>. Oh well! <strong>\u00af\\<em>(\u30c4)<\/em>\/\u00af<\/strong><\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>I recently worked as a virtual teaching assistant (vTA) at the <a href=\"https:\/\/www.sans.org\">SANS<\/a> Purple-Team Summit (2021) for <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/hacker-techniques-exploits-incident-handling\/\">SEC504<\/a>. I\u2019m <a href=\"https:\/\/shellsharks.com\/training-retrospective#thoughts-on-sans-training-and-giac-certification-exams\">relatively experienced<\/a> in the world of SANS trainings and have participated as a <a href=\"https:\/\/www.sans.org\/work-study-program\/\">course facilitator<\/a> a number of times but working as a vTA was a new experience. It was fun and rewarding to help the students in that class througout the week!<\/li>\n  <li>I recently became <strong>re<\/strong>-acquainted with the concept of <a href=\"https:\/\/principlesofchaos.org\">Chaos Engineering<\/a> (of Netflix origins <em>circa 2010<\/em> - think <a href=\"https:\/\/www.gremlin.com\/chaos-monkey\/\">Chaos Monkey<\/a>). Though I haven\u2019t really been learning anything specifically in this domain, I think it\u2019s a cool area to be in so it\u2019s definitely on my radar for the future\u2026<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>In a <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/04\/03\/log#gadgets\">continuation of my AirPods Max saga<\/a> - I\u2019ve picked up a new pair. Most of my original gripes have been resolved through firmware updates so I\u2019ve been pretty happy with them so far. They work really well with moving from one device to another, the active noise-cancellation is unbelievable and the sound is pretty good to my ears so I\u2019m thinking I will hold onto them this time.<\/li>\n  <li>I also finally received my new <a href=\"https:\/\/www.apple.com\/newsroom\/2021\/04\/apple-unveils-new-ipad-pro-with-m1-chip-and-stunning-liquid-retina-xdr-display\/\">M1-enabled iPad<\/a> (11-inch model). It\u2019s similar in a lot of ways to my previous 11-inch model so there really isn\u2019t much to say. I don\u2019t have any apps or workflows that really take advantage of the power the M1 brings. I look forward to <a href=\"https:\/\/developer.apple.com\/wwdc21\/\">WWDC<\/a> next week as I expect they will unveil some potentially interesting things in the world of <a href=\"https:\/\/www.apple.com\/ipados\/\">iPadOS<\/a>. (Here\u2019s to <a href=\"https:\/\/developer.apple.com\/xcode\/\">Xcode<\/a> making its way to iPad soon!)<\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li>With both my <a href=\"https:\/\/www.apple.com\/airpods-max\/\">AirPods Max<\/a> and <a href=\"https:\/\/www.akg.com\/Headphones\/Professional%20Headphones\/K240-Studio.html\">AKG K240 Studio<\/a> (which I use for <a href=\"https:\/\/shellsharks.com\/podcast\">podcasting<\/a>) headphones sitting on my desk, I\u2019ve started shopping around for a headphone stand that fits the vibe of my workspace. Haven\u2019t found anything yet though\u2026<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Hoping to do a little outdoors pickup basketball soon.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I finished up Disney\u2019s <a href=\"https:\/\/disneyplusoriginals.disney.com\/show\/the-falcon-and-the-winter-soldier\">The Falcon and the Winter Soldier<\/a>. I can see how for some those two characters are kinda random and not overly compelling relative to some other characters in the <a href=\"https:\/\/www.marvel.com\">Marvel<\/a> universe. I really enjoyed this arc though.<\/li>\n  <li>I started watching Disney\u2019s animated series <a href=\"https:\/\/www.disneyplus.com\/series\/the-bad-batch\/\">Star Wars: The Bad Batch<\/a>. The Bad Batch is a spin-off from the previous animated series <a href=\"https:\/\/www.imdb.com\/title\/tt0458290\/\">Star Wars: The Clone Wars<\/a>. Like the Clone Wars series, I really enjoy the tie-ins that are made to the original movies. I\u2019ve learned quite a bit about the smaller characters - everything from <a href=\"https:\/\/starwars.fandom.com\/wiki\/Toydarian\">Toydarians<\/a> to the <a href=\"https:\/\/starwars.fandom.com\/wiki\/Rancor\">Rancor<\/a>! It\u2019s just fun to see how they weave in all the lore and interesting elements from the original films.<\/li>\n  <li>I finished <a href=\"https:\/\/www.nbc.com\/the-good-place\">The Good Place<\/a>. It was overall a really great and super funny show. Not sure I completely agreed with how it ended though.<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>I\u2019ve recently decided to get into some <em>retro<\/em>-ish gaming, playing some <a href=\"https:\/\/store.steampowered.com\/app\/704450\/Neverwinter_Nights_Enhanced_Edition\/\">Neverwinter Nights on Steam<\/a>. I played quite a bit of NWN growing up so it\u2019s been fun revisiting this title. With cross-platform online multi-player, it has a lot of co-op potential!<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>Spring and Summer means brewery and winery hopping! Here\u2019s a few from the past month\u2026\n    <ul>\n      <li><a href=\"https:\/\/www.wheatlandspring.com\">Wheatland Spring<\/a> - Good beer in a quaint little spot. I really like their bottle\/can design and logo too.<\/li>\n      <li><a href=\"https:\/\/bearchasebrew.com\">Bear Chase Brewery<\/a> - Pretty good beer selection and a great view - kinda reminds me of a ski slope without the snow. They also have pretzels + beer cheese dip which was\u2026 yum.<\/li>\n      <li><a href=\"http:\/\/www.goombabrewery.com\">Quattro Goombas<\/a> - This is definitely my go-to spot. Close-by, has wine <em>and<\/em> beer - oh, and they have <strong>wine slushies<\/strong>\u2026. <em>amazing<\/em>. They also have really great pizza.<\/li>\n      <li><a href=\"https:\/\/dirtfarmbrewing.com\">Dirt Farm Brewing<\/a> - The beer selection is just OK but the views and grounds are amazing. They also used to have boiled peanuts which are my all-time favorite food. Though this past visit they only had food from a third-party food truck.<\/li>\n      <li><a href=\"https:\/\/dirtfarmbrewing.com\">The Bruery<\/a> - Not a place I\u2019ve *visited* but as a <a href=\"https:\/\/www.thebruery.com\/pages\/society\">member<\/a> I\u2019ve been ordering a lot of very compelling brews. They just don\u2019t stop!<\/li>\n      <li><a href=\"http:\/\/www.hill-high.com\">Hill High Marketplace<\/a> - Amazing selection of craft beer + delicious pies. Easily my favorite place in all of Loudoun county.<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n","pubDate":"Thu, 03 Jun 2021 00:57:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/06\/03\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/06\/03\/log"},{"title":"Captain's Log, Entry: May 5, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>What\u2019s been goin\u2019 on\u2026 The VM bootcamp, The Shellsharks Podcast introduction episode, some Apple stuff, and more!<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve \u201cofficially\u201d launched the <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">Vulnerability Management Bootcamp<\/a> (<strong>*<\/strong> <em>v0.99<\/em>), which is a <strong>relatively in-depth<\/strong> piece (<em>over 15k words<\/em>). <strong>*<\/strong> There are a <em>few<\/em> finishing touches I need to apply to the bootcamp, hence the <em>0.99<\/em> version number. Ultimately, I intend on creating a series of bootcamps and trainings similar to the <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">VM bootcamp<\/a> and have them all be part of a greater effort - <strong>Shellsharks Academy<\/strong> (<em>or something like that<\/em>). Successful completion of any individual bootcamp would (<em>in this future scenario<\/em>) earn you a certification, and combined with multiple other trainings, could net you a \u201cgraduate\u201d certificate in a sense. The <em>academy<\/em> as an idea lives exclusively in my head for now but I\u2019d like to see where I can take it once I get some feedback on the <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">initial offering<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>In creating this initial <a href=\"https:\/\/shellsharks.com\/vm-bootcamp#title\">VM bootcamp<\/a>, I learned a little about <a href=\"https:\/\/jekyllrb.com\/docs\/\">testing jekyll<\/a> sites <em>remotely<\/em> (<em>see cli snippet below<\/em>) as well as the limitations of the Javascript <em><a href=\"https:\/\/developer.mozilla.org\/en-US\/docs\/Web\/API\/Element\/mouseover_event\">onmouseover<\/a><\/em> action on mobile. Long story short, it <strong>doesn\u2019t<\/strong> work well.<\/p>\n  <\/li>\n<\/ul>\n\n<div class=\"language-shell highlighter-rouge\"><div class=\"highlight\"><pre class=\"highlight\"><code>bundle <span class=\"nb\">exec <\/span>jekyll serve <span class=\"nt\">--host<\/span><span class=\"o\">=<\/span>0.0.0.0\n<\/code><\/pre><\/div><\/div>\n\n<ul>\n  <li>I made a hefty addition to the <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">infosec blogs<\/a> repository. Shoutout to <a href=\"https:\/\/twitter.com\/DoddsyLTD\">@DoddysLTD<\/a> and <a href=\"https:\/\/twitter.com\/DoddsyLTD\/status\/1376451878448459778\">his tweet<\/a> for providing a lot of the source material.<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>I recently <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/moaadv\/a_list_of_named_vulnerabilities_let_me_know_if_im\/\">posted on Reddit<\/a> a link to my <a href=\"https:\/\/shellsharks.com\/designer-vulnerabilities#title\">Designer Vulnerabilities<\/a> historical resource. It got some decent feedback! I also <a href=\"https:\/\/www.reddit.com\/r\/cybersecurity\/comments\/mu02dv\/a_five_year_infosec_education_retrospective\/\">posted a link<\/a> to my <a href=\"https:\/\/shellsharks.com\/training-retrospective#title\">Education Retrospective<\/a> and though I got <em>some<\/em> engagement, overall I think people may have considered it a little \u201cbraggy\u201d. <em>Oh well<\/em>, can\u2019t please everyone.<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>So the first episode (as well as the introduction episode) of <em>The Shellsharks Podcast<\/em> has been recorded, <strong>yay<\/strong>! It is however not available for streaming, <em>yet<\/em>. I need to find how to actually <a href=\"https:\/\/www.rev.com\/blog\/how-to-get-a-podcast-on-apple-podcasts\">get it into Podcast apps<\/a>. This requires finding suitable hosting (maybe <a href=\"https:\/\/blog.soundcloud.com\/2018\/05\/30\/host-podcast-soundcloud\/\">SoundCloud<\/a>?), creating an <a href=\"https:\/\/rss.com\/blog\/how-to-create-an-rss-feed-for-a-podcast\/\">RSS feed<\/a> and submitting the podcast to the <a href=\"https:\/\/podcastsconnect.apple.com\/\">necessary places<\/a>. Hopefully I can sort this out by the end of this week. As a sneak peak though, check out the Podcast art below!<\/li>\n<\/ul>\n\n<center><a href=\"https:\/\/shellsharks.com\/podcast\"><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/theshellsharkspodcast.png\" alt=\"the shellsharks podcast\" width=\"200\" \/><\/a><\/center>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>So I (finally) sat for my <a href=\"https:\/\/www.giac.org\/certification\/cloud-penetration-tester-gcpn\">GIAC GCPN<\/a> certification exam and am happy to report I did very well (scoring a 90%)! The exam was pretty easy in my opinion. I have a <a href=\"https:\/\/shellsharks.com\/training-retrospective#sec588-cloud-penetration-testing-gcpn-sans\">review of the exam\/class<\/a> on the site if you are interested. In preparation for the exam, I used only one of the two <a href=\"https:\/\/www.giac.org\/exams\/preparation\">practice exams<\/a> SANS provides which meant I was able to <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/mtsdnk\/give_away_giac_cloud_penetration_tester_gcpn\/\">give the other away<\/a>. It\u2019s nice that SANS allows you to do this.<\/li>\n<\/ul>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>\n    <p><a href=\"https:\/\/www.apple.com\">Apple<\/a> recently held their <a href=\"https:\/\/www.apple.com\/apple-events\/\">Spring event<\/a> wherein they introduced a variety of new and interesting products - new <a href=\"https:\/\/www.apple.com\/apple-tv-4k\/\">4K Apple TV<\/a>, improved Apple TV <a href=\"https:\/\/www.apple.com\/shop\/product\/MJFM3LL\/A\/siri-remote\">Siri remote<\/a>, <a href=\"https:\/\/www.apple.com\/airtag\/\">AirTag<\/a>, <a href=\"https:\/\/www.apple.com\/imac-24\/\">M1-powered iMacs<\/a>, a new <a href=\"https:\/\/www.apple.com\/newsroom\/2021\/04\/apple-introduces-iphone-12-and-iphone-12-mini-in-a-stunning-new-purple\/\">purple iPhone 12<\/a> and most importantly (for me), the new M1-laden <a href=\"https:\/\/www.apple.com\/ipad-pro\/\">iPad Pro<\/a>. I\u2019d <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/04\/03\/log#gadgets\">previously complained<\/a> about <em>not having<\/em> an iPad but was (somewhat) patiently waiting for Apple to refresh these devices before purchasing another one. <em>Well I\u2019m glad I waited<\/em>! The introduction of the <a href=\"https:\/\/www.macrumors.com\/guide\/m1\/\">M1 chip<\/a> into the iPad doesn\u2019t just mean the iPad will benefit from the performance improvements which the M1 brings. This also hints at a future for the iPad that might include other \u201cdesktop-class\u201d applications (such as <a href=\"https:\/\/developer.apple.com\/support\/xcode\/\">XCode<\/a>!). I\u2019m very excited for what this will mean for the iPad in the future and think this is a good time to get in, as the M1 future-proofs this purchase for some time.<\/p>\n  <\/li>\n  <li>\n    <p>A quick comment on <a href=\"https:\/\/www.apple.com\/airtag\/\">AirTag<\/a>: I think these are cool - but, I\u2019m not sure I have enough concrete reasons for getting them quite yet. I\u2019d like to think of four solid use-cases and then buy one of the <a href=\"https:\/\/www.apple.com\/shop\/buy-airtag\/airtag\">4-packs<\/a>. These are my <em>potential<\/em> AirTag use-cases so far\u2026<\/p>\n    <ul>\n      <li><strong>Put one in my car<\/strong>: <a href=\"https:\/\/www.tesla.com\/model3\">My car<\/a> currently has a feature where I can pinpoint it\u2019s location via GPS so I\u2019m not sure if this is a great use-case. I think the AirTag would have better accuracy though in a crowded parking lot or if GPS coverage is poor.<\/li>\n      <li><strong>Frisbee Golf<\/strong>: I do a little <em><a href=\"https:\/\/www.frolf.com\/frolfing\/\">frolfing<\/a><\/em> and occasionally will throw a disc so deep into the woods that I have a hard time finding it. This <em>could<\/em> be the answer to that issue. The real question is, where can I place the tag on the disc and would it non-trivially affect its ability to fly in the same way. Also I have to consider the implications of throwing a disc into a pond and losing the $25~ tag completely.<\/li>\n      <li><strong>Purse<\/strong>: Not for me, but for the wife. Maybe she would want to track this? I\u2019d have to ask.<\/li>\n    <\/ul>\n  <\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Though I haven\u2019t been exercising nearly as much as I\u2019d like to (or at all really), I did recently <a href=\"https:\/\/www.amazon.com\/dp\/B07SFWJCCS?psc=1&amp;ref=ppx_yo2_dt_b_product_details\">purchase some new shoes<\/a> that I hope to use for running. That combined with a <em>little less<\/em> mid-week craft beer enjoyment and I think I can achieve some health points.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>I\u2019ve been watching \u201c<a href=\"https:\/\/www.nbc.com\/the-good-place\">The Good Place<\/a>\u201d and though I think the name is a pretty silly, the show is <strong>very good<\/strong>.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>\n    <p>I\u2019m on <a href=\"https:\/\/www.joinclubhouse.com\">Clubhouse<\/a> now (<strong>@mk3s<\/strong>). I haven\u2019t really gotten that into it yet but if you\u2019d like to connect with me there that\u2019d be cool.<\/p>\n  <\/li>\n  <li>\n    <p>I started a new job! More details on this to come\u2026<\/p>\n  <\/li>\n  <li>\n    <p>Warmer weather is here! This, coupled with having received my second vaccination dose (Pfizer) means I will be enjoying more of <a href=\"https:\/\/www.virginiawine.org\/regions\/northern-virginia\">Northern VA\u2019s excellent wine region<\/a>. In fact, I recently went to <a href=\"https:\/\/www.twotwistedposts.com\">Two Twisted Posts<\/a> winery and really enjoyed not only the wine but also the laid-back vibes. I definitely recommend it!<\/p>\n  <\/li>\n<\/ul>\n","pubDate":"Wed, 05 May 2021 14:47:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/05\/05\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/05\/05\/log"},{"title":"Captain's Log, Entry: April 3, 2021","author":"mike@shellsharks.com (Mike)","description":"<p><strong>April!<\/strong> Not quite reliably warm yet in NOVA but getting there. This past month has really been a blur\u2026<\/p>\n\n<h6 id=\"site-news\">Site News<\/h6>\n<ul>\n  <li>I introduced a few new features to the site in the past month. <a href=\"https:\/\/shellsharks.com\/tags\">Tags<\/a>, a <a href=\"https:\/\/shellsharks.com\/disclaimer\">disclaimer<\/a> and a couple new social links (i.e. <a href=\"https:\/\/www.reddit.com\/user\/mk3s\/\">Reddit<\/a> &amp; <a href=\"https:\/\/mastodon.technology\/web\/accounts\/127184\">Mastodon<\/a>) to name a few (<strong>EDIT<\/strong>: Removed Mastodon link - no one really uses that). Does anyone actually use <a href=\"https:\/\/joinmastodon.org\">Mastodon<\/a>? I\u2019m particularly proud of my tagging implementation. There\u2019s nothing overtly challenging about how it\u2019s being done, I just think it\u2019s cool. <em>Definitely check it out<\/em>. I also changed up the way I use <a href=\"https:\/\/fontawesome.com\">Font Awesome<\/a> to display the little icons you see on the home page (and sprinkled elsewhere around the site). It was actually really easy to switch from the locally-served variety to the remote, <a href=\"https:\/\/fontawesome.com\/start\">JS approach<\/a> which brings the icons in directly from Font Awesome\u2019s servers.<\/li>\n<\/ul>\n\n<center><a href=\"https:\/\/mastodon.technology\/web\/accounts\/127184\"><i class=\"ph ph-mastodon-logo lg\" title=\"Mastodon\"><\/i><\/a>&nbsp;&nbsp;<a href=\"https:\/\/shellsharks.com\/ocean\"><i class=\"ph ph-waves lg\" title=\"Beware. Sharks!\"><\/i><\/a><\/center>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>I\u2019ve learned that maintaining an <em>active<\/em> <a href=\"https:\/\/discord.gg\/3rkHgtcYbb\">Discord server<\/a> is hard. But that\u2019s ok, not every wants to chat infosec every day like myself. <em>That\u2019s perfectly ok<\/em>! Where there is endless engagement however is <a href=\"https:\/\/www.reddit.com\/\">Reddit<\/a>. I\u2019ve set a personal goal for myself to average at least one post or comment a day over the course of this entire year (so at least 365 posts\/comments). The idea is for these posts\/comments to be substantial, helping out the community, answering questions, etc\u2026 It\u2019s April 3rd today, so we\u2019re about 90+ days in and I have approximately 115+ comments\/posts so far, so I\u2019m on track to meet or exceed my goal. Will likely report on this throughout the year and have some interesting statistics (e.g. # of posts, total karma gained, etc\u2026) by the end of the year. On the topic of Reddit - I also <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/comments\/m0lbst\/a_guide_for_those_looking_to_break_into_the\/\">dropped a link<\/a> for my <a href=\"https:\/\/shellsharks.com\/getting-into-information-security#title\">Getting Into Information Security<\/a> write-up and it got pretty positive feedback which was cool.<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>Update on the podcast - Basically, I have everything I need now to actually start it up. I was missing some of the software I needed to <a href=\"https:\/\/rogueamoeba.com\/loopback\/\">route<\/a>, <a href=\"https:\/\/rogueamoeba.com\/audiohijack\/\">record<\/a> and <a href=\"https:\/\/rogueamoeba.com\/farrago\/\">inject<\/a> the audio, and I wanted a <a href=\"https:\/\/www.logitech.com\/en-us\/products\/webcams\/brio-4k-hdr-webcam.960-001105.html\">decent webcam<\/a> to see my cohost(s) and\/or guest(s). I\u2019ve now acquired all of this stuff. Recording and then publishing of episode 1 should (hopefully) be sometime in the April timeframe!<\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>As I previously mentioned, this past month has been a bit of a <em>blur<\/em> (much of my focus has been on a <em>secret<\/em> project). Mostly I have been making a couple of (imo) cool additions to the site and learning more about <a href=\"https:\/\/jekyllrb.com\">Jekyll<\/a> along the way. My studying for the <a href=\"https:\/\/www.sans.org\/cyber-security-courses\/cloud-penetration-testing\/\">SANS SEC588 Cloud Penetration Testing<\/a> course also got thrown on the back-burner. I need to pick this back up soon or my <a href=\"https:\/\/www.giac.org\/certification\/cloud-penetration-tester-gcpn\">exam<\/a> attempt will expire\u2026<\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li>I\u2019ve made just one important change to my current <a href=\"https:\/\/shellsharks.com\/desk-setup-2021\">desk setup<\/a> and that is the addition of the <a href=\"https:\/\/www.logitech.com\/en-us\/products\/webcams\/brio-4k-hdr-webcam.960-001105.html\">Logitech Brio<\/a> webcam (Purchased on <a href=\"https:\/\/www.amazon.com\/Logitech-BRIO-Conferencing-Recording-Streaming\/dp\/B01N5UOYC4\">Amazon<\/a>). This was one of the last things I needed for all things meetings, podcasting and generally keeping up with people via video chats in a quarantined world. The quality of it is really nice, it is simple plug-n-play with MacOS and the default field-of-view is good <em>imo<\/em>. I have it sitting on a little camera tripod I found lying around my house which puts it at a good level relative to my face. Now between the 4k web cam, the pod mic and using the headphones for audio-out, my setup for meetings is maybe a <em>little<\/em> over the top, but the quality is great so I\u2019m happy with this setup.<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/brio.jpeg\" alt=\"brio\" \/><\/p>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>\n    <p>Update on the <a href=\"https:\/\/www.apple.com\/airpods-max\/\">AirPods Max<\/a> - Basically, I returned them. The audio quality was <em>good<\/em> but to my ears not <em>so great<\/em> that they were really worth the $550 price tag. At the time I was trying them out, they were suffering from a pretty serious battery drain issue and this was one of the big reasons I was unhappy with them. Of course, this seems to have been <a href=\"https:\/\/9to5mac.com\/2021\/03\/12\/airpods-max-battery-drain-issues-fixed\/\">remedied in a recent firmware update<\/a> but, <em>oh well<\/em>. In the end, I\u2019m happy I returned them.<\/p>\n  <\/li>\n  <li>\n    <p><strong><a href=\"https:\/\/www.apple.com\/ipad\/\">iPad<\/a><\/strong>. I had to give the one I had up and since then have really missed it. I haven\u2019t went off and bought a new one yet as the <a href=\"https:\/\/www.macrumors.com\/guide\/apple-event\/\">upcoming models are supposedly going to be announced soon<\/a>. My iPad story is one of not knowing what you\u2019d miss until you no longer have it. Turns out, I used my iPad quite a bit! I would load recipes up onto it for cooking, it was my couch-web-surfing machine of choice and I used it a lot for <a href=\"https:\/\/www.reddit.com\/user\/mk3s\">browsing\/responding<\/a> to things on Reddit, etc\u2026 I think I\u2019ll definitely be picking another one up, just have to wait for the new models.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Just forget everything I said <a href=\"https:\/\/shellsharks.com\/captains-log\/2021\/03\/02\/log#fitness\">last time<\/a> about Apple\u2019s <a href=\"https:\/\/www.apple.com\/apple-fitness-plus\/\">Fitness+<\/a>. Well\u2026 maybe not everything. I still think the service is cool and something I might be able to get into, <em>but<\/em> I haven\u2019t kept up with it. With warm weather here around the corner I am however hoping to get a little more active and start to burn off some of this winter\/Covid chub I\u2019ve managed to accumulate.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>Finished up the re-watch of <a href=\"https:\/\/www.hbo.com\/game-of-thrones\">Game of Thrones<\/a>. Still awesome overall. The final season is <em>OK<\/em>\u2026 could have been better. Other than that - I\u2019m not a real crime documentary person but I heard interesting things about the <a href=\"https:\/\/www.netflix.com\">Netflix<\/a> special <a href=\"https:\/\/www.netflix.com\/title\/81183727\">The Vanishing at the Cecil Hotel<\/a> and decided to give it a shot. My review is essentially \u2013 Yeah, that <a href=\"https:\/\/www.youtube.com\/watch?v=_rfLSVIA0L0\">video of Elisa<\/a> is strange and definitely creepy, but that documentary tries <em>waaaaay<\/em> too hard and is really one of the worst things I\u2019ve ever tried to watch. 0\/10 would\u2019nt recommend.<\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Haven\u2019t been playing much of anything (busy with secret project). <a href=\"https:\/\/outriders.square-enix-games.com\/en-us\/\">This game<\/a> looks pretty cool though. Might have to give it a shot.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>I\u2019ve tried not thinking about it. My beloved <a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA?.tsrc=applewf\">TSLA<\/a> has been down but things <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2021-04-02\/tesla-delivers-184-800-cars-in-1q-on-strong-reception-in-china\">might be looking up<\/a>.<\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<p>Not too much interesting to report. But I am excited about it warming up! I\u2019ve missed playing frisbee golf.<\/p>\n","pubDate":"Sat, 03 Apr 2021 01:51:00 -0400","link":"https:\/\/shellsharks.com\/captains-log\/2021\/04\/03\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/04\/03\/log"},{"title":"Captain's Log, Entry: March 2, 2021","author":"mike@shellsharks.com (Mike)","description":"<p>This is the <u>Captain's Log<\/u> - <em>A (mostly) unstructured stream-of-consciousness dedicated to life, tech and infosec minutiae.<\/em><\/p>\n\n<h6 id=\"site-news\"><a href=\"https:\/\/shellsharks.com\/news\">Site News<\/a><\/h6>\n\n<ul>\n  <li>Created the <strong><a href=\"https:\/\/shellsharks.com\/captains-log#title\">Captain\u2019s Log<\/a><\/strong> for micro-journaling.<\/li>\n  <li>Earlier this year I refreshed the <a href=\"https:\/\/agusmakmun.github.io\">old design<\/a> <sup><a href=\"https:\/\/agusmakmun.github.io\">1<\/a><\/sup> (shown below) into what you see now. Though there was a number of <em>under-the-hood<\/em> changes, the biggest and primary reason for the redesign was that I wanted something that was <strong>dark mode<\/strong>. I\u2019m often up late-at-night working on stuff and having a site that was mostly blinding white (as you can see in the image below) was just not working out for me. With this thematic change I also created the <em>cool<\/em> new Shellsharks icon you see on the front page. I love it!<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/old-shellsharks.PNG\" alt=\"Old Design\" \/><\/p>\n\n<h6 id=\"shellsharks-community\">Shellsharks Community<\/h6>\n<ul>\n  <li>From it\u2019s inception <a href=\"https:\/\/shellsharks.com\/blogging-from-ipad#title\">Shellsharks<\/a> has been a community-building effort. I\u2019ve always enjoyed mentoring and sharing what I am learning\/working-on and I\u2019ve been trying to find new ways give back. In its original form, Shellsharks was merely a meet-up group where me and a number of coworkers got together and did some <a href=\"https:\/\/www.hackthebox.eu\">CTF-type stuff<\/a>. Since then I\u2019ve created the <a href=\"https:\/\/shellsharks.com\/\">blog\/site<\/a> and most recently I\u2019ve established the <a href=\"https:\/\/discord.gg\/3rkHgtcYbb\">Shellsharks Discord<\/a>. It can be hard to write a blog and not feel like you are just shouting into the void. With <em>community-building<\/em> aspirations comes the challenge of building a following or put differently, cultivating engagement. Sure, I can pitch my content on <a href=\"https:\/\/www.reddit.com\/r\/netsecstudents\/\">Reddit<\/a> or <a href=\"https:\/\/www.linkedin.com\/in\/mikesass\/\">LinkedIn<\/a>, or I can @ people on <a href=\"https:\/\/twitter.com\">Twitter<\/a> from the <em>official<\/em> <a href=\"https:\/\/twitter.com\/shellsharks\">@shellsharks<\/a> account but I\u2019ve never really been the \u201c<em>networking<\/em>\u201d type - the majority of my relationships having been made in face-to-face\/on-the-job situations. But I\u2019m here all the same, slowly reaching out across the web and into my professional contact-space and piecing together something bigger, not for myself but for the (hopeful) betterment of the infosec community. It\u2019s worth pointing out that this foray is not into an untapped vacuum but rather a space that is quite crowded. There are a ton of infosec-themed Discord servers, <a href=\"https:\/\/shellsharks.com\/infosec-blogs#title\">cybersecurity blogs<\/a> and infosec <a href=\"https:\/\/shellsharks.com\/infosec-tools#title\">resources<\/a>\/<a href=\"https:\/\/shellsharks.com\/online-training#title\">training<\/a> sites. This invariably complicates the process of building yet another unique infosec community but fortunately speaks to the overall (amazing) health of the community-at-large. In any case, I\u2019d love for anyone interested in connecting to find me in the <a href=\"https:\/\/discord.gg\/3rkHgtcYbb\">Shellsharks Discord<\/a> or <a href=\"https:\/\/shellsharks.social\/@shellsharks\">send me a message on Mastodon<\/a>!<\/li>\n<\/ul>\n\n<h6 id=\"shellsharks-podcast\">Shellsharks Podcast<\/h6>\n<ul>\n  <li>In addition to other community-building endeavors (see above), I am working on spinning up a Podcast. This is still in relatively early stages. I\u2019ve acquired some of the gear (i.e. <a href=\"https:\/\/www.uaudio.com\/audio-interfaces\/apollo-twin-mkii.html\">audio interface<\/a>, <a href=\"https:\/\/www.amazon.com\/Audio-Technica-AT2020-Cardioid-Condenser-Microphone\/dp\/B0006H92QK\">mic<\/a>, <a href=\"https:\/\/www.amazon.com\/dp\/B081GD9LLM\/ref=twister_B085RTZN3G?_encoding=UTF8&amp;psc=1\">boom arm<\/a>) and I\u2019ve been workshopping some names and potential formats but nothing is decided quite yet. I am waiting on my new computer to arrive before I really get going on it. The format will likely be pretty casual. I plan to have a variety of guests where we\u2019ll mostly just chat about anything infosec, tech or just life (as is the broad theme of Shellsharks). <strong>Stay tuned!<\/strong><\/li>\n<\/ul>\n\n<h6 id=\"what-im-learning\">What I\u2019m Learning<\/h6>\n<ul>\n  <li>\n    <p>Right now I\u2019m enrolled in SANS\u2019 <strong><a href=\"https:\/\/www.sans.org\/cyber-security-courses\/cloud-penetration-testing\/\">SEC588: Cloud Penetration Testing<\/a><\/strong> training. I\u2019m on a cloud kick right now and this seemed like the perfect training for me to hone my <a href=\"https:\/\/aws.amazon.com\">AWS<\/a> \/ <a href=\"https:\/\/azure.microsoft.com\/\">Azure<\/a> skills as well as add to my offensive security repertoire. Day 1 was a little <em>basic<\/em> and Day 2 was mostly a rehash of basic AWS knowledge I already possess but with Day 3 I am starting to get into content that is pretty interesting and new to me. Hopefully I can get through the rest of this training soon and challenge <a href=\"https:\/\/www.giac.org\/certification\/cloud-penetration-tester-gcpn\">GIAC\u2019s GCPN<\/a> exam shortly after.<\/p>\n  <\/li>\n  <li>\n    <p>The <a href=\"https:\/\/shellsharks.com\/\">Shellsharks site<\/a> is built using <a href=\"https:\/\/pages.github.com\">GitHub Pages<\/a> which in-turn leverages <strong><a href=\"https:\/\/jekyllrb.com\">Jekyll<\/a><\/strong>. As such, I\u2019ve been (over-time) learning more and more about Jekyll. Most recently, I\u2019ve been playing around with the concept of \u201c<a href=\"https:\/\/jekyllrb.com\/docs\/collections\/\">collections<\/a>\u201d within Jekyll, specifically to build out this <a href=\"https:\/\/shellsharks.com\/captains-log\">Captain\u2019s Log<\/a> series. The collection feature is useful for grouping this sort of closely-related content. Now that I\u2019m familiar with why you would use this feature I\u2019m starting to see all the other applications it may have for the site. Anyways, recently I\u2019ve learned not only how to get started with collections but also how to <a href=\"https:\/\/talk.jekyllrb.com\/t\/looping-over-jekyll-collections\/1842\">iterate over a collection<\/a> and do stuff like <a href=\"https:\/\/talk.jekyllrb.com\/t\/display-last-item-of-a-collection\/2605\">grab the most recently created item in a collection<\/a>. Cool!<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"desk-setup\">Desk Setup<\/h6>\n<ul>\n  <li>I\u2019ve been using a <strong><a href=\"https:\/\/support.apple.com\/kb\/sp697?locale=en_US\">Mac Pro (Late 2013)<\/a><\/strong> for a week or two as my primary workstation and it\u2019s been really great! Sure, this much-maligned \u201cserver-class\u201d piece of kit may not of ever lived up to it\u2019s <a href=\"https:\/\/www.youtube.com\/watch?v=ujvZJxn4mvo\">initial introduction hype<\/a> but even in 2021 it can definitely function as desktop\/workstation-class computer with current-age specs. I took a base-model \u201ctrash can\u201d and leveraged <a href=\"https:\/\/eshop.macsales.com\/shop\/turnkey\/MacPro2013\/2013_Xeon_Processor\/Apple_Mac_Pro_2013\/faq\">OWC\u2019s upgrade service<\/a> to give this machine a bump in CPU, RAM and hard drive space (to 8-core, 64GB and 1TB respectively). This service is priced pretty fairly in my opinion and in my case, I opted for this route since I wanted to upgrade from the base 4-core processor which is not recommended for those who don\u2019t have experience performing <a href=\"https:\/\/eshop.macsales.com\/installvideos\/macpro_2013_proc\/\">that sort of upgrade<\/a> as it can be a little tricky. With this upgrade complete, I have a machine which has <em>similar<\/em> specs to the <a href=\"https:\/\/support.apple.com\/kb\/SP809?locale=en_US\">current-gen MacBook Pros<\/a> for a fraction of the price. You can grab a <a href=\"https:\/\/www.ebay.com\/sch\/i.html?_from=R40&amp;_nkw=mac+pro+2013&amp;_sacat=111418&amp;_udhi=950\">Mac Pro 2013 on ebay<\/a> for less than $1,000 and upgrade using OWC all combined for much less than the $2,399 that the base 16\u201d MacBook Pro 2019 would run you. In the end, you get a computer which can be spec\u2019ed (in some ways) beyond what a modern Intel-based MacBook Pro could get you, has much more in the way of I\/O (6x <a href=\"https:\/\/www.macworld.com\/article\/2083257\/what-you-need-to-know-about-thunderbolt-2.html\">Thunderbolt v2<\/a>, 4x USB-A, 2x Ethernet, 1x HDMI) and imo \u2026 looks really cool.<\/li>\n<\/ul>\n\n<p><img src=\"https:\/\/shellsharks-images.s3.amazonaws.com\/captains-log\/2021\/trashcan-macpro.JPG\" alt=\"Mac Pro 2013\" \/><\/p>\n\n<h6 id=\"gadgets\">Gadgets<\/h6>\n<ul>\n  <li>I ordered a pair of <em>Sky Blue<\/em> <strong><a href=\"https:\/\/www.apple.com\/airpods-max\/\">AirPods Max<\/a><\/strong> in December of last year and recently took delivery of them (Was this backorder a sign of high demand or low volume production? I\u2019m not sure). I\u2019ve used over-ear headphones in the past and never really took to them. Either I found them uncomfortable, too-bulky or just overkill for what I really needed for music listening at the time. Regardless, being the fanboy that I am I decided to try out the new (<a href=\"https:\/\/www.apple.com\/shop\/buy-airpods\/airpods-max\">very expensive<\/a>) offering from <a href=\"https:\/\/www.apple.com\">Apple<\/a>. With the improvements in <a href=\"https:\/\/www.apple.com\/airplay\/\">AirPlay<\/a> 2, coupled with other neat integration features with <a href=\"https:\/\/www.apple.com\/ios\/\">iOS<\/a> I felt these would be if nothing else a fun (albeit expensive) way to listen to my music. More substantively, I had developed a few real-world use-cases for owning a pair of over-ear, noise-cancelling headphones. First, I often like to listen to my music at a high volume. I own a few <a href=\"https:\/\/www.apple.com\/homepod\/\">HomePods<\/a> which to my ears produce high quality sound and are very loud but this style of listening comes at a cost of being somewhat invasive to anyone in my house. Up until recently that has just been my wife but as a new father, I don\u2019t want to run the risk of waking up or otherwise aggravating the baby with loud, often somewhat aggressive music. Second, I like to listen to music while I work and the AirPods Max seemed like they could deliver the serene, noise-cancelling soundscape I\u2019d need to focus on what I\u2019m working on all while rocking out. I haven\u2019t decided whether I will keep them but so far I\u2019ve been impressed with their sound (<em>Disclaimer<\/em>: I am in no way an audiophile or a good judge of sound quality at a technical level), love the way they look and think they are very comfortable. I\u2019ve worn them for several contiguous hours and felt none of the usual strain that I typically feel with over-ear headphones. My only complaint so far is that the ear cups are quite heavy (being solid metal) which has resulted in them sliding forward on my head in times where I am leaning over quickly or dramatically head-banging to some power metal. Not a deal-breaker but at $550 USD I\u2019m not completely sold quite yet.<\/li>\n<\/ul>\n\n<h6 id=\"fitness\">Fitness<\/h6>\n<ul>\n  <li>Since the pandemic began, my primary source of exercise (basketball) has been almost entirely erased from my weekly routine. Up until recently, I\u2019ve failed in replacing this with any substantial alternate form of exercise. I\u2019ve never had success motivating myself into doing traditional weight-training and it\u2019s been a few years since I regularly went running. I\u2019ve realized this is something that needs to be remedied in some manner so I have started the free trial for <strong><a href=\"https:\/\/www.apple.com\/apple-fitness-plus\/\">Apple Fitness+<\/a><\/strong>. The service is relatively new and as a result has only a small selection of available workouts but just today I received an alert notifying me that new workouts are now available so I\u2019m sure they are working hard to build out new offerings. To date I have done a few workouts and have found them to be very approachable, even for someone like myself who has never really done group\/class-style workouts before. What I think will motivate me to return is the gamification aspects coupled with the tight integration with my <a href=\"https:\/\/www.apple.com\/watch\/\">Apple Watch<\/a> and general <a href=\"https:\/\/www.apple.com\/ios\/\">iOS<\/a> ecosystem. If nothing else, it does feel good to get out of my desk chair and get a li\u2019l sweat goin\u2019.<\/li>\n<\/ul>\n\n<h6 id=\"tv\">TV<\/h6>\n<ul>\n  <li>\n    <p>A few years ago, I (finally) decided to sit down and watch the animated Star Wars series, <strong><a href=\"https:\/\/www.imdb.com\/title\/tt0458290\/\">The Clone Wars<\/a><\/strong>. As a life-long Star Wars fan I thought it would be a dream to have that much (canon) Star Wars content. Though I found the story pretty compelling right from the first episode I was turned off a little by the animation style and a-lot by the over-the-top-silly dialogue coming from the goofy Battle Droids. So I gave up. Due to a certain (very awesome) cameo in the second season of the <a href=\"https:\/\/www.imdb.com\/title\/tt8111088\/\">Mandalorian<\/a> I decided to give the show a second chance. Though I still never got used to how silly the droid-army is I did watch the entire series and really enjoyed it. Particularly the final season I found to really be amazing. The way this series provides background on all the smaller characters in the main Star Wars series was a huge plus. If you\u2019re like me and haven\u2019t watched Clone Wars, I highly recommend giving it a shot!<\/p>\n  <\/li>\n  <li>\n    <p>I\u2019ve also been re-watching\/binging <strong><a href=\"https:\/\/www.imdb.com\/title\/tt0944947\/\">Game of Thrones<\/a><\/strong> and through the first 6 seasons it really is one of the best shows (imo) of all time. I have my gripes with the final two seasons (like many do). Mostly, I think the final seasons are marked with plot points that are both really really awesome but some that are not-so-awesome, silly or even a little non-sensical. Ultimately I think it\u2019s fine the way the show ended but I still don\u2019t like some of the ways in which they got there nor the feeling of being <em>rushed<\/em> to the finish-line by the show creators. Oh well, still hasn\u2019t prevented me from watching it all over again.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"gaming\">Gaming<\/h6>\n<ul>\n  <li>Though I\u2019ve been really busy with work, fatherhood and Shellsharks-related stuff, I have found time for one of my other life-long but recently-ignored passions - <em>Gaming<\/em>. Coming off a second stint of being <a href=\"https:\/\/www.youtube.com\/watch?v=fDJBsc9SRvc&amp;feature=youtu.be\">overly-obsessed<\/a> with playing <a href=\"https:\/\/www.bungie.net\/7\/en\/Destiny\/NewLight\">Destiny<\/a> on <a href=\"https:\/\/stadia.google.com\/home?original_url=https%3A%2F%2Fstadia.google.com%2F&amp;redirect_reasons=11\">Stadia<\/a>, I wanted to find something that was fun but didn\u2019t require the same time-commitment. Enter <strong><a href=\"https:\/\/www.nintendo.com\/games\/detail\/super-mario-3d-world-plus-bowsers-fury-switch\/\">Super Mario 3D World<\/a><\/strong> + it\u2019s expansion \u201c<strong>Bowser\u2019s Fury<\/strong>\u201d. I only recently picked up a <a href=\"https:\/\/www.nintendo.com\/games\/detail\/super-mario-3d-world-plus-bowsers-fury-switch\/\">Switch<\/a> (shoutout to a friend who traded it to me for a 6-pack of beer) and I have to say, the console really is good for facilitating <em>game-anywhere<\/em>. What I mean is that I can un-dock my the Switch, bring it downstairs and play through a number of levels in Super Marios 3D World while I watch TV with the wife, or play a little in bed before I go to sleep. Otherwise, it\u2019s kinda a whole production to sit down in front of my TV and have a long play-session. Those opportunities are fewer and farther between these days so being able to bring the console anywhere is great. So back to Super Mario 3D World\u2026 this game has been out for a while but with the newly released expansion I pulled the trigger on buying it. The expansion, \u201cBowser\u2019s Fury\u201d, is very reminiscent of the classic <a href=\"https:\/\/en.wikipedia.org\/wiki\/Nintendo_64\">N64<\/a> title <a href=\"https:\/\/supermario3dallstars.nintendo.com\/super-mario-64\/\">Super Mario 64<\/a> which remains to this day one of my favorite games of all time. I\u2019m not going to review Super Mario 3D World but rather I\u2019ll just say that it\u2019s a lot of fun and with it\u2019s <em>local<\/em> AND <em>online<\/em> co-op multiplayer modes it\u2019s been a fun way to send time with family &amp; friends. Hanging out with others, especially in this time of pandemic is certainly time-well-spent.<\/li>\n<\/ul>\n\n<h6 id=\"investing\">Investing<\/h6>\n<ul>\n  <li>\n    <p>I\u2019ve been a long time fan of <a href=\"https:\/\/www.tesla.com\">Tesla<\/a> and a huge <a href=\"https:\/\/finance.yahoo.com\/quote\/TSLA?.tsrc=applewf\">TSLA<\/a> bull. As such, I recently bought a <em>bit<\/em> of TSLA stock\u2026 then\u2026 it dropped like 25%. Ugh! Well, good thing I\u2019m long on it. Learn from my mistake\u2026 <a href=\"https:\/\/www.investopedia.com\/terms\/d\/dollarcostaveraging.asp\">dollar-cost average<\/a>.<\/p>\n  <\/li>\n  <li>\n    <p>I also have dipped my toe into the world of <a href=\"https:\/\/en.wikipedia.org\/wiki\/Cryptocurrency\">cryptocurrencies<\/a>. I signed up for a <a href=\"https:\/\/www.coinbase.com\">Coinbase<\/a> account and took some relatively small positions in a few different crypto-variants (i.e <a href=\"https:\/\/bitcoin.org\/en\/\">BTC<\/a>, <a href=\"https:\/\/renproject.io\">REN<\/a>, <a href=\"https:\/\/bch.info\/en\/\">BCH<\/a>, <a href=\"https:\/\/www.dash.org\">DASH<\/a>, <a href=\"https:\/\/ethereum.org\/en\/\">ETH<\/a>, <a href=\"https:\/\/www.stellar.org\">XLM<\/a>, <a href=\"https:\/\/aave.com\">AAVE<\/a>, <a href=\"https:\/\/chain.link\">LINK<\/a>, <a href=\"https:\/\/litecoin.org\">LTC<\/a>) - No <a href=\"https:\/\/dogecoin.com\">DOGE<\/a>, despite my boy <a href=\"https:\/\/twitter.com\/elonmusk\/status\/1366477626429169666\">Elon\u2019s infatuation<\/a>. It\u2019s definitely a wild world. 25% gains and losses in any given day. Something that if you watched the markets real closely you could probably make some decent gains doing amateur-ish day-trading. Would require a larger investment than I\u2019ve made which can be scary though. Hah! I\u2019m using standard Coinbase as well as <a href=\"https:\/\/pro.coinbase.com\">Coinbase Pro<\/a> but find that though fees are less with pro, the inability to trade from crypto to crypto is a real weakness of the \u201cpro\u201d platform.<\/p>\n  <\/li>\n<\/ul>\n\n<h6 id=\"life\">Life<\/h6>\n<ul>\n  <li>\n    <p>I recently became a Dad to an awesome li\u2019l dude. This has changed a lot about how I spend my days and certainly has introduced competition for my time. Between my career goals, unyielding desire to learn <em>all the cybers<\/em>, and continued development of <a href=\"https:\/\/shellsharks.com\/\">Shellsharks<\/a>, this has meant a top-to-bottom reprioritization of everything. Though the pandemic has been terrible, it has at least given me the ability to work-from-home and thus spend more time with my son. With no commute, and some rejiggering of my schedule \/ daily tasks, I\u2019ve (so far) found time to spend with my expanded family while also GTD at work and continuing to work on the site. Oh, and <a href=\"https:\/\/www.whattoexpect.com\/first-year\/sleep\/sleep-training-baby\/\">sleep training<\/a> has really been a worth-while and time-freeing exercise.<\/p>\n  <\/li>\n  <li>\n    <p>I do miss my house being clean though\u2026<\/p>\n  <\/li>\n  <li>\n    <p>With the uptick in time I spend on work, my multitude of side projects and family-stuff, I\u2019ve found myself being entirely fueled by <a href=\"https:\/\/en.wikipedia.org\/wiki\/Fruit_Gushers\">Gushers<\/a> and coffee. The healthiest decision?\u2026 no. But, I do love candy.<\/p>\n  <\/li>\n<\/ul>\n","pubDate":"Tue, 02 Mar 2021 00:51:00 -0500","link":"https:\/\/shellsharks.com\/captains-log\/2021\/03\/02\/log","guid":"https:\/\/shellsharks.com\/captains-log\/2021\/03\/02\/log"}]}}