Security Researcher @crowdstrike | ex @microsoft @mitrecorp | Beardown @UArizona

Joined July 2010
242 Photos and videos
Cyrus retweeted
given the rise and impact of ICS phishing, we open sourced a tool to help the SOC clean up malicious calendar invites even if you’re not using @sublime_sec. please xpost for reach: github.com/sublime-security/…
10
20
1,660
Cyrus retweeted
Addiction to short-form videos reduces brain activity in the frontal lobe weakening the ability to focus.
744
10,358
43,886
9,995,534
30 Sep 2025
Go watch and support. Ben’s content game has leveled up to infinity this year
I dont mean to brag, but we have the highest quality video on @YouTube as rated by @cyrusSecurity Check out the all new @wehackhealth channel youtube.com/@wehackhealth?si…
1
2
319
Cyrus retweeted
Big drama today in the Tor community. Conrad Rockenhaus, a Tor operator based out of Michigan, United States, was arrested in 2020 after refusing to cooperate with the United States Federal Bureau of Investigation Rockenhaus, a disabled United States military veteran, ran the fastest Tor node in the United States. He was approached sometime in late 2019 when the FBI requested he allow them arbitrary access to his exit node and allow them to decrypt traffic. He denied their request. Subsequently, in February, 2020 his home was raided. He was arrested for violating the CFAA (Computer Fraud and Abuse Act). It was alleged that he was a disgruntled ex-employee causing problems at his former place of employment. Interestingly, to "help resolve the matter", law enforcement requested he decrypt his Tor exit node to prove his innocence (???). After he refused, he was held in a pre-trial detention cell for over 3 years. He was denied bail after law enforcement stated Mr. Rockenhaus used Linux to "access the dark web" and he was "not complying" and not allowing them access to this Tor exit node. After Mr. Rockenhaus' wife filed an official complaint, and Mr. Rockenhaus was miraculously released, he was raided by the United States Marshal Fugitive Task Force TWO TIMES(???). They took him out his home, threw him to the ground, beat him, smashed his windows, and threatened to murder his animals. They are still requesting Mr. Rockenhaus allow them to access his Tor exit node. Mr. Rockenhaus still has not granted them that privilege. All of this has been captured on home security camera footage. Additionally, his wife has released all court documents. See subsequent post for more information.
181
1,925
13,934
929,927
Cyrus retweeted
27 Jun 2025
ALERT—The FBI has recently observed the cybercriminal group Scattered Spider expanding its targeting to include the airline sector. These actors rely on social engineering techniques, often impersonating employees or contractors to deceive IT help desks into granting access. These techniques frequently involve methods to bypass multi-factor authentication (MFA), such as convincing help desk services to add unauthorized MFA devices to compromised accounts. They target large corporations and their third-party IT providers, which means anyone in the airline ecosystem, including trusted vendors and contractors, could be at risk. Once inside, Scattered Spider actors steal sensitive data for extortion and often deploy ransomware. The FBI is actively working with aviation and industry partners to address this activity and assist victims. Early reporting allows the FBI to engage promptly, share intelligence across the industry, and prevent further compromise. If you suspect your organization has been targeted, please contact your local FBI office.
331
1,620
4,306
524,308
1 Jul 2025
No need for the sauna when you’ve got this
1
3
104
5 Jun 2025
This advice and thread has been incredibly insightful. Highly recommend for all career stages
My advice to kids has changed recently and it's not to get a cybersecurity degree. Get a computer science one, with a specialization in AI or an AI solely degree. I feel like right now, the cybersecurity market is pretty rough on hiring folks in - and that's only going to get harder as AI progresses more. Having a computer science with AI focus, you can join any industry - but also be top notch in cybersecurity with new skills if you want to get into this field. I'm pretty reserved on when new things come out, and have PTSD around new cybersecurity trends that promise the world. I was the same when AI first came out - very reserved, is this going to have a huge impact? Is this really a thing. AI is much different and a monumental shift for the industry/economy and it'll only get better. The major problem we are going to run into with this is that how do we know who can really code and who's vibe coding? Pretty hard delineation/shift happening. While vibe code is cool and all, being able to actually code/develop something that's needed with augmentation from prompt coding is necessary.
1
183
30 Apr 2025
I’m sorry, but when did it ever leave the core mission? This is bs. That agency and the people working for them were doing great work. ⁦@CISAJen⁩ had done amazing things there DHS Secretary Noem: CISA needs to get back to ‘core mission’ | CyberScoop cyberscoop.com/kristi-noem-r…
1
1
2
483
10 Apr 2025
This is just wrong. Imagine just being employed at SentinelOne and now you lost your clearance over a personal vendetta.
7
847
Cyrus retweeted
Stop robbing yourself of real knowledge. “Learning” today often looks like 5-10 minute videos claiming to be “complete guides” or “everything you need to know”—but most of the time, they either oversimplify or barely scratch the surface. Reading books/papers, listening to long-form discussions, and sitting with deep material changed how I understand complex topics. There’s a massive gap between surface-level overviews and the depth needed for true understanding. As a content creator, I’ll be the first to say: that “1 hour” guide probably came from weeks, months, or years of research, trial, error, and actual work experience. Use quick content as a spark - not a shortcut. Don’t trade depth for convenience.
5
30
144
5,828
Cyrus retweeted
Just built an MCP for Ghidra. Now basically any LLM (Claude, Gemini, local...) can Reverse Engineer malware for you. With the right prompting, it automates a *ton* of tedious tasks. One-shot markups of entire binaries with just a click. Open source, on Github now.
81
783
4,419
284,411
Cyrus retweeted
A threat actor leveraging the same naming pattern has registered 10K domains for various #smishing scams. They pose as toll services for US states and package delivery services. Root domain names start with "com-" as a way to trick victims. More info at bit.ly/4ipQ0LW
14
82
205
20,926
Cyrus retweeted
🚨The CrowdStrike 2025 Global Threat Report is available NOW. Get unparalleled insights into how adversaries evolved in 2024. Download the full report here: crwdstr.ke/6015LwkGS
1
17
33
3,023
20 Feb 2025
36
Cyrus retweeted
DOGE is a bigger threat to US federal government information systems than China. If you find this statement controversial, I'm going to question your IT and cybersecurity credentials.
126
189
1,656
94,118
19 Sep 2024
My first console I was able to buy, I’m getting this anniversary edition off of pure nostalgia (probably won’t even play it 😂)
Timeless ‘90s style returns ✨ Unveiling the PlayStation 30th Anniversary Collection, launching November 21: play.st/47z9UQD
1
1
146
19 Sep 2024
Like even the charging cable….yeah it’s a 🔒 for me
45
Cyrus retweeted
10 Aug 2024
i have 3 @defcon badges to give away. if you’re a student or paid for your own way to vegas this year hmu. please RT for reach
2
48
67
11,843