GRC, Pen Testing, SecOPS, Threat Intel Stuff, Audit/Assessment, Incident Response & Digital Forensics - Tweets are mine (or are they? Did you read the EULA?)

Joined March 2009
855 Photos and videos
Pinned Tweet
My 0-day exploits are your employees.
4
25
80
So, what did we learn today? 1) who tests before applying patches, 2) who has separate test and prod networks, 3) who has current biz continuity plans, 4) who has tested DR capabilities. As it turns out, not as many as you would expect and hope. From airlines to hospitals
1
8
177
Client: Our operations and applications are HIPAA compliant. Me: Cool, can we chat with your privacy and compliance officers? Client: we don't have those, we are all responsible!
4
147
Just because you say you're HIPAA compliant doesn't mean that you are.
2
149
Jaded InfoSec Pro retweeted
26 Jun 2024
PSA: every time someone uses 'vulnerability' and 'threat' interchangeably, a puppy gets ransomware. #science #wordsmeanthings #themoreyouknow
6
5
35
1,753
Jaded InfoSec Pro retweeted
Haha
Unfortunately, a tabloid newspaper has got hold of a music video I recorded in Islington North with an iconic grime artist I've admired for years. They are planning to publish a heavily edited clip, so I'm releasing the full version myself. Watch here: tinyurl.com/yeymfb96
1
1
443
Jaded InfoSec Pro retweeted
Father’s Day. lol.
3
1
6
292
Jaded InfoSec Pro retweeted
If you're having nvidia-docker-container issues after an update, nuke /etc/nvidia-container-runtime/config.toml and restart everything. I can't tell you how many hours I chased my ass on that.
1
1
1
184
Jaded InfoSec Pro retweeted
Replying to @Bandrel
/usr/local/src...
1
1
4
341
Jaded InfoSec Pro retweeted
seen this coming for a while... its rough out there at the bottom.
17 Apr 2024
Been having some real frustrating conversations lately. Tons of jr or mid career security people landing at places and getting no mentorship, no training. No support. Treated pretty aggressively by Sr resources. They were promised Sr people would be there to help, guide, and train. Instead they are threatened and obsfucate their working knowledge in fear of … replacement? I dunno. It’s sad. Have a working mentorship program and some training. As a cyber security company that is table stakes. Or lose out on the future, lose the next generation of protectors.
1
5
254
Jaded InfoSec Pro retweeted
Yikes, flying to HackSpaceCon, flight delayed twice - 4 hours so far. Hoping it isn't cancelled. If it is, I'm driving :P
18
1
70
9,921
Jaded InfoSec Pro retweeted
Be aware of your legal obligations when it comes to ethical AI. These are evolving fast and may impact the systems you are building. Great talk with many case studies from Rachael Greaves of Castlepoint Systems @qconlondon
3
3
496
Jaded InfoSec Pro retweeted
This is an all too accurate take. Please believe me, I'm a co-author on an AI. I didn't fear the AIs. I fear what folks are doing with them.
This is one of the best descriptions I've lately ran into.
3
35
161
12,182
Jaded InfoSec Pro retweeted
Young Guns 2!

ALT Regulars Mount GIF

1
2
1,642
#infosec #ProTip if you haven't lived through technical debt, it's not fun. It will slow down development, modernization and transformation projects to a standstill; burning out folks as they work to address issues from a decade ago rather than the current goal.
69
Jaded InfoSec Pro retweeted
Is this IPv5?
31 Mar 2024
What could go wrong 😁🤔
16
83
2,630
157,006
Jaded InfoSec Pro retweeted
Never underestimate the number of people who say they want need "a transformation" but in reality want most things, tools, processes, people to stay the same. #random
6
5
32
6,120
Jaded InfoSec Pro retweeted
Facebook snooped on users' Snapchat traffic in secret project, documents reveal tcrn.ch/3VC2XKM via @techcrunch

1
1
51
#infosec #ProTip there is a difference on focus between confidentiality (protecting the enterprise) and privacy (protecting the individual). They serve two distinct and separate functions.
2
60
#infosec #ProTip you have a choice, you can choose to test your plan yourself or you can choose for an adversary to test your plan. Which one sounds better?
92