Thank you for the care package @attritionorg and congrats on 25 years! The top sticker is very fitting given my current relationship with the neighborhood squirrels and my bird feeder.
Today our Cloud Vulnerability Research (CVR) team shared this research into LLM security, which is broadly applicable to AI domain security practitioners working in this rapidly evolving space.
Learn more: https://t.co/QtcOoDKgez
"We'll just get it running for now, and see how it goes later" - famous last words 😂 First session of the day for me - watching @cji compromise k8s on GKE
#googlecloudnext
I’m very excited to be speaking at Google Cloud Next ‘24 about Google Kubernetes Engine Threat Detection with @danlhommedieu on April 9, 2024. Join the discussion with @GoogleCloud → https://t.co/JydTzYd341
I've been reverse engineering the xz backdoor this weekend and have documented the payload format and written a proof-of-concept exploit for the RCE. The payloads are signed with an ED448 key, so I patched my own key into the backdoor for testing. :-)
https://t.co/CvKo3xPRkP
This Sneakers computer press kit floppy from @JonnySchnittger is such a cool piece of memorabilia from one of my favorite movies. These came out great - thank you Jonny!
Our Linux Kernel 0-day / 1-day "CI/CD" for kernelCTF on Github is up and running. See exploit builds and repros publicly there. ✅️ / ❌️ https://t.co/132WGeOi2w
Google Cloud is hiring security engineers in the Product Security Assurance team (not my team but we work with them closely). Find and fix vulns, help products build in security by default. Seattle and Bay Area. #infosecjobs https://t.co/mT2tRVupue
Hi friends! I had the privilege of enjoying a bit of funemployment. I'm starting to look for the next adventure and would be excited to have a chat about (EMEA-remote) leadership positions in the product/cloud security space. RTs would be greatly appreciated 🙏