Making cybersecurity accessible. #Subterfuge #Prismatica #Voltaire

Joined January 2018
142 Photos and videos
Pinned Tweet
Security is more than project management! Get in there! @WWHackinFest 2024.
1
5
887
Most vulnerability platforms give you more findings. Sirius Scan was built to give operators more clarity. Open-source. Operator-first. Built for real security teams. sirius.opensecurity.com/
50
Open Security Inc retweeted
Replying to @IANS_Security
@IANS_Security Philadelphia!!!
1
187
Most vulnerability management programs don’t fail quietly— At @BlackHatEvents USA, learn from @0sm0s1z how to assess real risk like an operator: identify true attack paths and prioritize what actually matters. Early reg ends May 22: bit.ly/3PPte7u
1
1
191
Open Security Inc retweeted
Adversaries are moving faster. Detection windows are shrinking, and vulnerability management must become operational. At @BlackHatEvents, I’ll be teaching a course on operationalizing vulnerability management from the operator’s perspective. Join me: bit.ly/3PPte7u
2
2
190
Recent Iran-linked cyber activity is a reminder that cyber conflict is evolving. In this clip, CIO Matt Toussain explains the rise of hyper-symmetrical cyber threats where participation in cyber conflict may require nothing more than a computer and internet access.#CyberSecurity
1
3
125
Open Security Inc retweeted
v1 launch week!
1
7
584
Open Security Inc retweeted
How I hacked ChatGPT and found a full-read SSRF! sirleeroyjenkins.medium.com/… #bugbountywriteups #ssrf #openai #ChatGPT #BugBounty

7
39
181
18,455
💼 Cybercrime is business — built on risk vs. reward. Many ransomware operators make millions. The lavish lifestyles you see online — Lamborghinis, exotic pets — are very real. But every dollar comes with exposure.
1
1
220
💰 That Lamborghini driver may never leave jurisdictions that protect them. One mistake — like traveling to Poland — can mean arrest. (One REvil member tied to the Colonial Pipeline attack learned that firsthand when Interpol apprehended him.)
1
1
137
📊 Cybercrime isn’t random. It's organized, calculated, and financially driven. The more we study their business model, the better we can defend ours. Speak with one of our experts here: opensecurity.com/contact/ Check out vulnerability scanner here: opensecurity.com/resources/t…
1
118
Traditional tools like Nexpose, Rapid7, Tenable, and Qualys have a major head start. Decades of module development = deeply entrenched IP. But what if we started over—smarter? With Vulnerability GPT, we built a new foundation:
1
1
147
🔍 A holistically enriched vulnerability database (not just NIST CVEs) 🤖 Retrieval-augmented generation 🌐 Search engine grounding (soon using Perplexity!) This is the first step toward modernizing how we think about scanning—and it’s open source.
1
1
103
Vulnerability Management is a Mess. In most orgs, it’s disorganized, reactive, and overly complex. Why? Because no one’s come in and said: ✅ “Here’s how you align with industry leaders.” ✅ “Here’s where you’re falling behind.” ✅ “Here’s a clear path forward.”
1
2
80
Instead, teams are left guessing — chasing scanner results, patching without priority, and playing guessing games with risks. It’s time for a reset. We need frameworks. We need real-world benchmarking. We need operational clarity — not just another tool.
1
1
57