Non-Standard human, husband, and grateful father. USAF veteran. I mostly tweet nonsense, and my tweets are attributable only to me, no other entity.

Joined February 2015
886 Photos and videos
Just wrapped up my talk on AI assisted phishing at @BSidesSATX and will make my slides available when the talk gets uploaded to the interwebs. Shout out to @FullMetalHackIT for helping me with the dry runs of the call which made all this possible. #cyber #phishing #hackers
1
2
136
Shane Jones retweeted
The wait is over. 🍕🐢 The first-ever official TMNT Pizzeria is opening in Los Angeles on June 20th, 2026 at 11AM — and the Turtles will be there in person to celebrate with us! 📍 TMNT Pizzeria Los Angeles 1444 3rd Street, Santa Monica, CA
743
3,530
24,865
2,011,520
42
146
1,360
52,803
Shane Jones retweeted
rate my take off
425
3,773
58,546
8,574,034
Shane Jones retweeted
NSA is releasing security design considerations for AI-driven automation leveraging MCP which, while simplifying the integration of diverse capabilities into powerful agent workflows, requires caution. Learn more: nsa.gov/Portals/75/documents…
68
252
895
108,008
Shane Jones retweeted
28 years ago today, 7 members of the hacking group @L0phtHeavyInd told the U.S. Senate they could "shut down the internet in 30 minutes."
50
142
839
52,090
At this rate, with how well AI codes, it makes zero sense to use public libraries/packages when you can just have AI build your own versions.
Everyone using Claude code and/or Codex - how are you enforcing them to not pull in new/potentially malicious packages from npm or PyPi?
1
85
Shane Jones retweeted
‼️🚨 This is wild. OpenAI just confirmed it got hit in the TanStack npm supply chain attack, and the attackers were close to being able to ship malicious code inside official OpenAI software, signed and trusted, if their incident response had not caught it in time. The campaign is the work of TeamPCP, the same crew running the Mini Shai-Hulud wave. Two employee devices in OpenAI's corporate environment were compromised through the malicious TanStack packages. The attackers used that foothold to reach a limited subset of internal source code repositories. OpenAI says only "limited credential material" was successfully exfiltrated, with no customer data, production systems, intellectual property or deployed software impacted. Here is the part that should grab your attention. OpenAI is rotating its code-signing certificates and forcing every macOS user to update their OpenAI apps. You do not rotate signing certs for "limited credential material." You rotate signing certs when the attacker was close enough to signing malicious binaries as OpenAI. The "we contained it in time" framing is doing serious heavy lifting here. For wider context, the same TeamPCP wave also hit Mistral AI, UiPath, Guardrails AI, OpenSearch and SAP npm packages. The TanStack compromise is tracked as CVE-2026-45321 at CVSS 9.6, and Mistral AI source code is already being advertised for sale by the group.
81
326
2,140
298,969
Got my first speaking engagement, BSides SATX.
1
3
218
Shane Jones retweeted
Usage limits are up, effective today we're: 1) Doubling Claude Code's 5-hour limits for Pro, Max, Team and seat-based Enterprise plans 2) Removing peak hours limit reduction on Claude Code for Pro and Max plans 3) Substantially raising our API rate limits for Opus models
We’ve agreed to a partnership with @SpaceX that will substantially increase our compute capacity. This, along with our other recent compute deals, means that we’ve been able to increase our usage limits for Claude Code and the Claude API.
1,511
3,201
41,201
3,956,007
Homeboy just lost his man card hitting the throttle while trying to turn his bike around rofl
“Reacher” star Alan Ritchson was captured on video allegedly beating his neighbor in Tennessee.
143
Shane Jones retweeted
"Eat at a local restaurant tonight. Get the cream sauce. Have a cold pint at 4 o’clock in a mostly empty bar. Go somewhere you’ve never been. Listen to someone you think may have nothing in common with you. Order the steak rare. Eat an oyster. Have a negroni. Have two. Be open to a world where you may not understand or agree with the person next to you, but have a drink with them anyways. Eat slowly. Tip your server. Check in on your friends. Check in on yourself. Enjoy the ride." Anthony Bourdain
221
1,018
6,721
431,580
Shane Jones retweeted
United States 🇺🇸 - LexisNexis has allegedly been breached, exposing 400,000 user profiles, federal judge and DOJ accounts, plaintext AWS secrets, customer passwords, and internal IT infrastructure maps. dailydarkweb.net/lexisnexis-…
127
1,336
4,420
443,226
Shane Jones retweeted
Random internet autists, schizos, and ADHDers will monitor the situation so hard that their analysis is either on par with or eclipses that of the government.
US Air Force officer says random Twitter users tracking military flights are publishing info that would be considered “Secret or maybe even Top Secret” if done internally, and it’s making OPSEC extremely hard. Maj. Claire Randolph (US AFCENT, Chief of Weapons & Tactics): You’ve got Twitter feeds of randos just studying where our airplanes go and publishing it. If US analysts did some of that, we would consider it Secret or maybe even Top Secret.
123
520
4,746
227,792
600 > 900 got me. Pretty cool to learn I can read that fast though.
Jan 14
Can you read 900 words per minute? Try it.
1
115
Shane Jones retweeted
🤣🤣🤣🤣🤣🤣🤣🤣🤣
82
145
1,911
49,709
Shane Jones retweeted
2
10
124
27,006
I'm Mike Vining, SGM USA (Retired). Welcome to my official X account. In the next several months, I'll share EOD and Delta Force memories. And I'll offer info on moral injury and PTSD. I'm calling this account "Blasting Through," because that's the title of my book, a memoir, due for release in August 2026.
970
2,229
20,684
2,305,580
Shane Jones retweeted
🚨🦑 Kraken cryptocurrency exchange panel access being sold on a dark web forum - read-only account with user profiles and transaction history. Access details: ▪️ View only - user profiles and transaction history ▪️ Generate support tickets to phish or extract more data ▪️ No IP restrictions (proxied through their system) ▪️ Pulling full KYC docs (ID, selfie, proof of address, source of funds) ▪️ Access good for at least 1-2 months before rotation ▪️ TOTP expires in FEB Price: Negotiable, from $1
39
77
557
111,996
Shane Jones retweeted
31 Dec 2025
so i had to remove my car stereo so it wouldn't get stolen, which was the style at the time
52
459
5,456
151,244