# blog

**URL:** https://discuss.pomerium.com/c/blog/16.md

[Latest](https://discuss.pomerium.com/latest.md) · [Categories](https://discuss.pomerium.com/categories.md) · [Tags](https://discuss.pomerium.com/tags.md)

---

## [About the blog category](https://discuss.pomerium.com/t/about-the-blog-category/392)

<div class="topic-metadata">

**Author:** [@CMo](https://discuss.pomerium.com/u/CMo)\
**Replies:** 0

</div>

---

## [Security is Usability — Examining Cybersecurity Erosion](https://discuss.pomerium.com/t/security-is-usability-examining-cybersecurity-erosion/413)

<div class="topic-metadata">

**Author:** [@CMo](https://discuss.pomerium.com/u/CMo)\
**Replies:** 0\
**Last updated:** [October 2, 2024, 11:27pm UTC](https://discuss.pomerium.com/t/security-is-usability-examining-cybersecurity-erosion/413 "2024-10-02T23:27:46Z")

</div>

It’s often said that humans are the weakest link in security and social engineering is easier than hacking. This is true — but there’s another facet that isn’t discussed enough: when the security design causes friction…

---

## [The Real Lessons from the Snowflake Breach](https://discuss.pomerium.com/t/the-real-lessons-from-the-snowflake-breach/393)

<div class="topic-metadata">

**Author:** [@CMo](https://discuss.pomerium.com/u/CMo)\
**Replies:** 0\
**Last updated:** [August 8, 2024, 7:29pm UTC](https://discuss.pomerium.com/t/the-real-lessons-from-the-snowflake-breach/393 "2024-08-08T19:29:37Z")

</div>

The Snowflake breach has more lessons than just “apply MFA”. From third-party risks to the Perimeter Problem, there’s more to consider about how these breaches affect companies.

---

## [CrowdStrike is a Harsh Reminder of the Danger of Third-Party Clients](https://discuss.pomerium.com/t/crowdstrike-is-a-harsh-reminder-of-the-danger-of-third-party-clients/389)

<div class="topic-metadata">

**Author:** [@CMo](https://discuss.pomerium.com/u/CMo)\
**Replies:** 0\
**Last updated:** [August 5, 2024, 5:29pm UTC](https://discuss.pomerium.com/t/crowdstrike-is-a-harsh-reminder-of-the-danger-of-third-party-clients/389 "2024-08-05T17:29:43Z")

</div>

Clients suck to maintain and are unreliable Auto-updates risk another incident Closed-source software does not allow for verification

---

## [Network-centric vs Application-centric Approach](https://discuss.pomerium.com/t/network-centric-vs-application-centric-approach/391)

<div class="topic-metadata">

**Author:** [@CMo](https://discuss.pomerium.com/u/CMo)\
**Replies:** 0\
**Last updated:** [August 7, 2024, 10:35pm UTC](https://discuss.pomerium.com/t/network-centric-vs-application-centric-approach/391 "2024-08-07T22:35:54Z")

</div>

Network-centric and application-centric approaches: which is better for safeguarding your infrastructure in today’s evolving threat landscape? Why does the NSA say: “Traditional perimeter-based network defenses with mu…
