NEW CyberExchange Community Platform Live
First let me wish everyone a MERRY CHRISTMAS and HAPPY HOLIDAYS! I worked a few days on what I think is a very exciting project, and unique!
I came up with an idea, what if there was a dedicated collaboration and real-time communication platform for Cybersecurity professionals from around the world to exchange information with each other? That is where "CyberExchange Community" comes in.
It is based on Zulip, an Open Source Real-Time, asynchronous Chat Collaboration Platform that has functionality like a Forum, like Reddit for example. Yet, its much more!
If your familiar with Slack, Rocketchat, MatterMost. These are used for communication and collaboration with team members. In this case, the "Team" will be Cybersecurity professionals and enthusiasts across the world.
Since it has many built in integrations and other functionalities over a typical message board / forum, it makes collaboration easy, secure and very flexible. Some of the things I have already integrated and enabled are:
- Webhooks to take the real-time RSS and OpenCTI feeds and automatically post to dedicated Channels / Rooms to be easily accessed and users can comment on the newest threats and advisories. This is simply a duplication of the Blog OpenCTI feed page, and the Blog Security Article Feeds which are below for comparison.
- I have integrated our Private Data Sovereign BigBlueButton Video, Audio, and Whiteboard Conferencing server into CyberExchange. Anyone who wishes can start a private or group/public room conference, to work real time or discuss issues with each other on a collaborative scale. All recording features on the server have been disabled for anyone, so you can be sure any communications using this method, are not archived, or has gone through any Big Tech comparable platforms. ie. Zoom, Teams etc. I want to try and make this as secure as possible, as it will be primary used by Cybersecurity professionals who should be encouraged to become less anonymous (by choice) and meet others. Also, the platform is configured to not be indexed by search engines, and you must be a full verified member/user to see the posts. Unlike reddit cybersecurity subreddit for example. This is intended to be a more exclusive real-time communications platform with minimized junk/guest type accounts.
NOTE: You have full control of how much information about yourself you want to reveal to others on the platform in your profile. You can also set status and preferences to appear offline, or busy etc. So you can remain stealth and read content if you desire, or become more actively involved and contribute in a multitude of ways. My goal was to make this platform unique in the sense that it would encourage people to "at least" put there Job Role / Function and perhaps where they operate from (location). There is dedicated fields in the user profile to enter this.
- Zulip, like Rocketchat and Slack have dedicated Desktop and mobile apps, to make using the platform even more enjoyable. There is a dedicated help topic giving the links where to get these. Other than that, its a simple as installing the app, and entering our full URL and logging in.
- This platform is designed to encourage feedback, and suggestions. You want a channel or functionality enabled? Let us know, and we can do it! We have full control of the API, the platform, and pretty much possibilities are endless!
- Anyone who becomes a member, can easily invite others to join and spread the word with the link to do so always available on the upper right hand side of the main dashboard. If you like it, and use it, spread the word!
Moderation... Eventually, as usage goes up and the word spreads, I would be looking for volunteers to become moderators of different channels. Preferably in the Topics and Subject Matter that person is an industry expert in.
In terms of the highly specialized nature of this new platform, and some sensitive topics and information that could be contributed or posted. I wanted to make a platform that is free from all Big Tech entanglement, and Security... naturally, is a big priority for CyberExchange. We are Cybersecurity professionals after all!
You will need to register using a non-disposable email address, and there is 2FA functionality setup for those who wish to use it, I would encourage everyone naturally. 😄
In the future, if more authentication and security login needs are discussed, I probably would integrate SAML, OpenID, or perhaps even Azure Auth. I want to be as sandboxed from Big Tech as possible, so if this type of alternate authentication is wanted or warranted. I would likely setup a dedicated Keycloak or Authentik Opensource type of Idp server to stay with the theme of being Data Sovereign.
To get started, click the link below and "Sign up"
Thanks and Feedback Welcome!
Dan