Secure Ideas is a security consulting firm focused on helping clients have the best penetration testing and training experience.

Joined March 2008
1,625 Photos and videos
I saw a meme I can't forget. 5 IS absolutely the most even odd number.
106
Jay is one of the great ones. If you can attend one class this year, attend this one.
Come join my updated Black Hat class in Las Vegas, "Agentic AI-Aided Kubernetes Attack and Defense!" Kubernetes and AI are more tightly-coupled than you think - about two thirds of organizations hosting generative AI models use Kubernetes to manage inference workloads (CNCF). And Kubernetes is growing in popularity for hosting streamable MCP servers and remote agents. We're going to have a blast with new cutting-edge exercises that integrate AI agents into attacking and defending Linux, containers, and Kubernetes. We'll also be attacking a multi-user agentic AI system running on Kubernetes, using both direct and indirect prompt injections, gaining access to the cluster, and adding indirect prompt injection backdoors to the vector database. As in all the other exercises, we'll turn around and harden the system against this. You can learn more and register here: blackhat.com/us-26/training/… Here's an excerpt of the class description: Learn how to use agentic AI to aid you as you attack and defend Kubernetes, Linux, and containers, from Jay Beale, who has led development of the Kubernetes CTF at DEF CON and the open source Kubernetes attack tool: Peirates. In this fully hands-on course, you'll get an x86 computer to keep, complete with an agentic AI framework, Kubernetes clusters, and capture the flag virtual machines, which you will attack and defend. You'll also get access to our cloud environment, allowing you to attack cloud-based Kubernetes clusters. This well-reviewed training focuses on giving you practical attack skills from real penetration tests, coupled with solid defenses to break attacks. You'll create an agentic AI platform with skills and tools that allow your agents to enumerate a cluster, analyze configuration weaknesses, and recommend attack paths. Every topic in the class has an attack exercise, where you will first compromise a Kubernetes cluster or application. Most have a matching defense exercise, where you will use new skills to break that attack, confident that it will break others.
1
1
210
Kevin "Johnson" Tackett retweeted
New Layer 8 Podcast with Jennifer Shannon and Kevin Tackett of @secureideas. Fun chat about social engineering and covert entry. What do you do when you lose your coat during an engagement? open.spotify.com/episode/16g…
2
1
263
Kevin "Johnson" Tackett retweeted
I like to keep this screenshots around from a friends onboarding deck 10 years ago.
5
11
52
4,457
Excited to announce that I married a wonderful woman last week. I have chosen to take her name, and so I am now Kevin Tackett.
1
1
10
510
Kevin "Johnson" Tackett retweeted
Current status: There's a conflict between Google cybersecurity researchers and the @ffmpeg project that doesn't have the resources to fix the vulns Google finds. So I'm busy trying to understand the bug to figure out how to patch it. Google provided enough information to easily reproduce the bug, so I simply compile everything, then watch it crash in the debugger, then step through the code before it gets to that point to see what went wrong. I've spent about 5 hours so far on this, mostly getting everything built properly on macOS, which is my preferred environment for debugging. I should be learning how to use VSCode on the Linux desktop as my source-level debugger. Fuck using raw gdb without a GUI frontend -- my philosophy for (checks notes) over 30 years.
47
56
1,384
261,608
Some days I wonder why we all can't see the other side of the debate. The FFMPEG vs Google is interesting in lots of ways. But the one I am most interested in is how the sides "debate".
1
323
We all want to prove our point and lose sight of the importance of what we are doing. We need to do better.
1
1
187
Of course, I know I am guilty of the same at times. And I look forward to the ways I am misunderstood in this post. :)
2
1
175
So @Google @googlefi messed up my daughter's phone last July. No one noticed because the service still worked. Tonight we had to factory reset her phone. No service. I just spent an hour on the phone with support. They acknowledge that it was their mistake yet are telling me
1
356
Anyone know a better way to handle this? Cause I am pretty pissed. :)
1
279
Now another two hours into this shit-show and I still don't have service on my daughter's phone. Seriously considering switching. But am afraid I will lose my number.
215
As someone who changed my last name when I turned 18 and with my upcoming marriage, it has got me thinking. For those of you who had their name changed AFTER they were professionally and publicly established in their career, how did you handle it and what impact did it have?
1
1
288
If I buy a physical case at a store for a video game, it should have the game card in it! And I get that the tiny 8-point type that says game card not included covers your legal liability, you have just irritated a customer.
1
1
308
I started an on demand class from a popular training vendor, not naming them yet! My very first question is who the fuck actually edited these slides. The letters in words seem randomly spaced. The first three letters in many words are literally printed on top of each other.
2
1
2
493
I will never worry about how slides look. They are actually proudly selling this around the world. I know this not only because I know where they sell, but the entire beginning of the book is ads for other certs by them AND a pompous paragraph about numbers of training centers.
1
1
1
307
Kevin "Johnson" Tackett retweeted
NEW EPISODE ALERT featuring Kevin Johnson @secureideas | “The Force” CONSUME HERE: 💻 WEBSITE: lnkd.in/eeWHz9Qg 🎧 SPOTIFY: lnkd.in/ebsvsZmk ▶️ YOUTUBE (LIKE & SUBSCRIBE): lnkd.in/eSf3wbFb #EthicalHacking #Hacker #InfoSec #Pentesting #Mentorship
1
3
4
404
I think one of my new favorite quotes is "Pardon me for speaking while you interrupt me"
4
377