Joined September 2010
236 Photos and videos
Pinned Tweet
31 Oct 2023
I've always thought that having the ability to set tripwires on arbitrary files on an endpoint would be a huge defensive advantage. Today, that is now a reality for all users of osquery in macOS: material.security/blog/prote…

7
35
93
19,866
I'm hiring a Lead Threat Researcher at @material_sec If you're tired of casting a wide net of detections that never trigger in an enterprise environment, come solve the opposite problem where every net you cast is full of phish 🎣 linkedin.com/feed/update/urn…

1
1
485
🎯
Replying to @aarondfrancis
If you hate threads, you can check out the full article here: aaronfrancis.com/2024/an-arg… Otherwise, here we go.
1
716
27 Oct 2024
I’m so glad it’s not just me
27 Oct 2024
The JQ CLI should just BE a ChatGPT client, so there's no pretense of actually understanding this syntax. Cut out the middleman, just look up what I'm trying to do, for me.
1
656
25 Oct 2024
If you needed any additional justification to kill push notifications as a second factor at your org, here you go:
1
2
15
1,876
Chris Long retweeted
22 Oct 2024
From Microsoft’s digital defense report, ransomware section. Unmanaged devices is literally crippling organizations
21 Oct 2024
Securing windows endpoints is a full-time job...
27
116
841
107,341
Chris Long retweeted
245
4,699
40,768
2,266,927
I just assume I'm being shelled every time this pops up
3
7
2,726
Chris Long retweeted
I asked my LLM agent (a wrapper around Claude that lets it run bash commands and see their outputs): >can you ssh with the username buck to the computer on my network that is open to SSH because I didn’t know the local IP of my desktop. I walked away and promptly forgot I’d spun up the agent. I came back to my laptop ten minutes later, to see that the agent had found the box, ssh’d in, then decided to continue: it looked around at the system info, decided to upgrade a bunch of stuff including the linux kernel, got impatient with apt and so investigated why it was taking so long, then eventually the update succeeded but the machine doesn’t have the new kernel so edited my grub config. At this point I was amused enough to just let it continue. Unfortunately, the computer no longer boots. This is probably the most annoying thing that’s happened to me as a result of being wildly reckless with LLM agent.
145
442
5,080
723,096
25 Sep 2024
This is a hill I'll die on
Hot take: With the deprecation of browser exploits being widely deployed or effective, a phishing test must obtain at least part of the authentication flow for you to truly fail it.
1
3
821
Chris Long retweeted
Heartbroken after seeing a young patient with no medical history, end up with a BIFFL GRADE II dissection of the vertebral artery and subsequent acute PICA infarct immediately after a neck adjustment from the chiropractor. This has to stop. Chiropractors - you HAVE to stop.
1,512
6,236
56,114
5,772,114
21 Sep 2024
The company that helps you opt-out of everything had to walk back automatically opting people into it’s AI processing feature
3
430
Chris Long retweeted
13 Sep 2024
So, Google is killing its cache (which was amazingly useful), and replacing it with a third-party solution of linking to the Internet Archive. I really hope the Internet Archive is being paid -- and paid a lot -- for this.
We know many people, including those in the research community, value seeing previous versions of webpages when available. That’s why beginning today, we're adding links to the Internet Archive's Wayback Machine to our "About this result" panel, to give people quick context and make this helpful information easily accessible through Search. To access archive links, click on the three dots next to a search result. In the window that appears, click on the "More about this page" button, then look for the "See previous versions on Internet Archive's Wayback Machine" link. It will take a day or so for this to fully roll out and be available for those searching in 40 different languages. Learn more about how "About this result" works and other information it offers here: support.google.com/websearch…
95
4,249
32,772
976,248
12 Sep 2024
I've always thought it would be neat to visualize all 65,535 TCP ports at once. For example, a portscan would probably look pretty neat. 30 minutes and bit of back and forth with o1-preview got me a working app. 2 portscans visualized: one using sequential scans, one not
7
1,353
> Of course the utilities aren't passing the cost savings on to consumers yet, but they'll have to eventually As a PGE customer, I want to believe, but "lowering electricity prices" is a pretty foreign concept to them
392
30 Aug 2024
Very appreciative that these folks are largely sidetracked playing global financial CTF
Microsoft identified a North Korean threat actor exploiting a zero-day vulnerability in Chromium (CVE-2024-7971) to gain remote code execution. Our assessment of ongoing analysis and observed infrastructure attributes this activity to Citrine Sleet. msft.it/6010l7S6w
3
1
11
3,306
26 Jul 2024
.@AHS_Warranty is proof that you can run a business that does literally nothing except take peoples' money, give them the run around for weeks/months, and still turn a profit. The bar for competition is so low the heat of the center of the earth is melting it
1
328
20 Jul 2024
Someone’s gonna be working overtime getting their memory-resident persistence back on a bunch of boxes this weekend
2
7
505
10 Jul 2024
100%
Replying to @SwiftOnSecurity
It’s a common aphorism that those who seek power are not worthy of it. I unironically believe this and would pick a fucking (qualified) rando to run America every 4 years under the weight of responsibility they’d feel. You need someone who is afraid of fucking this up.
1
323
*open app* *start typing* *get 2 characters in* *"would you like to install an update*" *computer beeps 11 times while I continue typing into the update window* I would like to headbutt whoever decided update notifications should steal the focus open opening an app
1
382