Father, biker, adrenaline junkie, PC gamer, vaccinated. CISO @hunterstrategy / Faculty Member @IANS_Security. My views are my own. (He/Him)

Joined April 2010
1,481 Photos and videos
Pinned Tweet
Reminder: Everything you do is either goal achieving, or stress relieving. Make sure you balance between the two is correct.
1
2
29
Andrew King (AJ) retweeted
šŸ”„ This Is Fine | The State of Pen Testing "If you talk to a dozen pen testers and ask them what a pen test is, you're going to get a dozen different answers." Penetration testing has long been a cornerstone of enterprise security — but the landscape continues to evolve. In this episode of the Hunter Strategy podcast, AJ King (@ScrumWhat), Jake Williams (@MalwareJake), and Joshua Marpet (@quadling - Sr. Product Security Consultant at Finite State, Faculty Member at IANS) discuss how penetration testing fits into modern enterprise risk management strategies. From compliance requirements to real-world security validation, the conversation explores how organizations can approach testing with both technical rigor and business context. Good security isn’t theoretical. It’s tested. Get the full episode āž”ļø f.mtr.cool/qfolyvslhaĀ  #CyberSecurity #PenTesting #SecurityTesting #EnterpriseSecurity
1
1
70
Andrew King (AJ) retweeted
CVE-2020-2033, CVE-2020-2021, CVE-2020-2050, CVE-2026-0257, and now CVE-2026-0265 Authentication bypass, as in direct access to your internal networks over the Internet This VPN architecture should be dead, get it off the Internet, it's a time bomb waiting to happen
When Your VPN Opens Your Private Network to the Public! An auth bypass in Palo Alto PAN-OS CAS Auth (CVE-2026-0265) that lets an attacker connect to the company's GlobalProtect VPN. Blog - hacktron.ai/blog/cve-2026-02…
4
59
459
113,417
Andrew King (AJ) retweeted
Entra App Proxy continues to be one of the biggest hidden gems of Entra P1 For over a decade, we've been able to stop exposing risky apps to the Internet by routing through agents with outbound connections to Azure I don't care what vendor you use, just get it off the Internet
Cloudflare is right about this. You're not going to be able to patch fast enough, but you can build your systems so that the vast majority of vulnerabilities don't matter. If you've not done that, you're going to have a bad time.
10
36
238
48,697
Andrew King (AJ) retweeted
A good primer on reasoning for IaC for all the things, even outside of infrastructure The one big caveat is, of course, the learning curve involved and the resulting increase in level of skill required for new hires
Replying to @AdamGell
To add onto what @NathanMcNulty said, Terraform isn’t just for Azure. It can build, release, and scale infra anywhere (Azure, AWS, etc.) and manage it as code. Paired with GitHub/GitLab, Entra becomes IaC too → more consistent, stable, and minimizing drift.
1
5
17
5,374
Andrew King (AJ) retweeted
In 48 hours, we’ll show you how to go from ā€œBe Afraidā€ to ā€œActionable Huntā€! Don’t miss this special webinar with @MalwareJake & Ibrahim Ahmed as they share how to turn scary headlines into focused action. šŸ“… Aug 14 – 2:30 PM ET Save your spot: hunterstrategy.zoom.us/webin…
3
2
230
When you bring an idea to someone, and the only thing they can do is talk about why it’s exhausting, hard, or can’t do it…just know if you’re that kind of person…you’re the worst. There is a difference between poking holes in an approach for someone to help vs. criticize.
1
1
189
Andrew King (AJ) retweeted
🚨 ONLY 3 DAYS LEFT TO REGISTER! 🚨  Threat headlines are constant. Your hunts should be consistent. Join @MalwareJake & Ibrahim Ahmed as they reveal the exact process to turn vague alerts into actionable hunts. šŸ“… Aug 14 – 2:30 PM ET Secure your spot now: hunterstrategy.zoom.us/webin…
1
109
Man there is zero question in my mind that Miami drivers are by far and away the worst drivers I’ve ever seen. Almost every single morning there is some dumbass wreck on I-95.
139
Andrew King (AJ) retweeted
Free men don’t ask for permission. And I’m not asking for your fucking permission @GOP.
2,082
4,522
30,242
1,178,990
Andrew King (AJ) retweeted
In Russia, the state-owned RIA Novosti @rianru news agency is openly advocating genocide and ethnic cleansing of Ukraine:
2
20
37
3,794
Someone get me his computer. Let’s let forensics be the judge :) (Don’t @ me this is a joke and I’m aware of the limitations)
OK schools chief Ryan Walters issues a statement tonight where he claims that the board members who said they observed porn playing on his screen during a meeting are lying and they should resign in disgrace.
148
Andrew King (AJ) retweeted
You are the only thing Holding you back.
1
2
12
666
Someone needs to go tell @Apple that their speech recognition has gone into the garbage can. It’s gotten to the point for me where it’s almost unusable. Anyone else notice this trend? I mainly use it for speech to text.
1
125
43 and still learning that I just need to STFU sometimes :)
1
1
98
Always blown my mind that the @AppleJournal app isn’t on the iPad. Whoever at @Apple was responsible for that decision wasn’t very bright.
1
119
Andrew King (AJ) retweeted
In St Louis, one PE firm owns 4 separate brands in the same geography. Customers search ā€œHVAC contractor near meā€ and don’t realize that the first 3 paid ads are from 3 companies… that are owned by the same parent company. The ā€œillusionā€ of getting ā€œcompetitive bidsā€ā€¦
68
43
1,151
125,897
Andrew King (AJ) retweeted
> tornado cash no longer sanctioned > cuts to CISA > fbi getting salad tossed > companies hiring "vibe coders" cybersecurity sales people:
30
158
1,967
56,737
Andrew King (AJ) retweeted
Archaeologists have discovered huge, spiral-shaped cylindrical structures stretching over 600 meters (about 2,000 feet) straight down beneath the Great Pyramid of Giza. These massive findings, located more than 2 kilometers (1.2 miles) below the pyramid's base, hint at enormous hidden constructions deep underground.
1,805
5,065
37,596
8,901,019
Be sure your opsec failures will find you out.
20 Mar 2025
1/ An investigation into the alleged identity of the mysterious Hyperliquid whale tied to illicit activity that profited ~$20M via highly leveraged positions over the past couple weeks.
137
The non-glamorous side of building a business are the nights where you just have too much to do before the next day and simply have to skip sleep.
70