Joined August 2008
Photos and videos
This is horrible news. Eric was like family for me for over ten years. My heart goes out to his family.
3
1
25
12,069
strandjs - strandjs@bsky.social retweeted
Security research reporting is kinda the only situation where an individual has any power over a corporation. What goes unsaid: the researcher could easily sell exploits on the grey market and get rich. Most report out of morals, lowk a refusal to contribute to cyberwarfare. Vendors relying on those morals to bully are happily prodding good people until they crack
Not that ‘responsible’ disclosure shit again 🙄 No vendor uses that term unless they want to call someone irresponsible. Even if someone drops 0day, patch & move on. Going after a researcher is a great way to turn 1 bad relationship into many terrible relationships.
13
71
511
33,595
strandjs - strandjs@bsky.social retweeted
Not all BloodHound data collection methods are created equal. Learn more: blackhillsinfosec.com/bloodh… A Practical Guide to BloodHound Data Collection by: Alyssa Snow Published: 4/29/2026
12
32
2,233
strandjs - strandjs@bsky.social retweeted
When cybersecurity makes people panic, Gerald Auger, Ph.D. teaches them “Don’t Panic.” Founder of Simply Cyber, educator at The Citadel, and host of the award-winning Daily Cyber Threat Brief, Gerald has helped thousands break into cyber. Hoopy frood included. Welcome Gerald!
3
5
795
strandjs - strandjs@bsky.social retweeted
MSRC woke up and decided to kill off all the good will it has built up over the last decade: microsoft.com/en-us/msrc/blo…
13
59
361
28,494
Moving on. Excited to announce Free Lab Fridays! Every week we will be releasing a new free lab for the community to to learn core infosec skills. For a limited time, we are also giving two free hours of cloud-based lab time. antisyphontraining.com/free-…
1
10
43
4,208
The reason for this is there is a huge gap between seeing people do things online and jumping to full CTFs. We are trying to bridge that gap to help people with step by step walkthroughs of core tools and techniques.
1
8
2,029
We say "limited time" because if this goes crazy big our cloud expenses get.... problematic. There are already a lot of labs there to do. However, every Friday is where we will release a step by step video on YouTube.
10
1,557
strandjs - strandjs@bsky.social retweeted
Come find us! We're at BSidesNOLA talking to people, learning things, and probably eating a beignet about it! 🍩
1
13
2,176
strandjs - strandjs@bsky.social retweeted
Upcoming training opportunity with me and @Antisy_Training in EU at @bsidesprg futuresec.io/training April 21-24, 2026!
1
16
3,441
I am going to Bsides Prague!!! Antisyphon PWYC Training is coming to Europe! Registration is open for Cybersecurity Foundations with John Strand. *formally called Getting Started in Security with BHIS and MITRE ATT&CK The course is April 21st-22nd, in partnership with BSides Prague 2026! Register now and get a free or discounted ticket to the sold-out conference. Register: web.cvent.com/event/e7123bd5… We are also running two other courses there, that are not PWYC: AI for Cybersecurity Professionals by Derek Banks Intro to Pentesting non-Western IT Infrastructure by Steve Borosh Learn more about the courses here: antisyphontraining.com/cours… Learn more about BSides Prague here: bsidesprg.cz/ We hope to see you in Prague!

1
1
9
2,270
strandjs - strandjs@bsky.social retweeted
Calling all hackers, hitchhikers, and hoopy froods who know where their towel is. It's time to round up the best talks of 2026 for presentation at Wild West Hackin' Fest - Deadwood, October 7-9, 2026. Submit yours here: wkf.ms/4tedY2h
6
11
2,342
At RSA handing out Backdoors & Breaches. Come grab a deck.
1
5
19
2,235
Hey everyone! We will be giving out free copies of Backoors and Breaches Competitive at ICS Connection Hub Moscone West 2014! See you there!
1
3
963
strandjs - strandjs@bsky.social retweeted
This is going to be a blast, hope to see you there! I'll be covering why I think Kubernetes is an under explored attack surface and demoing the some fun vulnerabilities (with a lab you can mess around in!)
Tomorrow at 11AM PT! Join me with @GrahamHelton3 for a session & live demo of a Kubernetes authentication bypass he recently disclosed that turns a commonly granted read-only permission into remote code execution in any pod in the cluster! youtube.com/watch?v=jTbANtMW… @offby1security
1
2
24
4,551
strandjs - strandjs@bsky.social retweeted
Replying to @WWHackinFest
@WWHackinFest Denver 2026 - Mishaal's PoV
1
10
1,383
strandjs - strandjs@bsky.social retweeted
Not my intent for this to go public btw. Not sure how they got the story - out of my hands.
I passed my research to law enforcement. Looks like they are using it. Super cool to see this unfold live. I hope they find her.
34
26
418
51,702