@alexcp.bsky.social
Cybersecurity data storytelling. DBIR at Verizon Business. Previously serial founder and parallel shitposter. He/him.
Trump subiu no telhado.
(For all the PT-BR idiom enjoyers out there)
I laughed so hard I thought I was going to cough up an organ. Every line is gold.
04.08.2025 23:06 β π 101 π 46 π¬ 7 π 6Lots of Chico Buarque playing in my house today.
05.08.2025 01:14 β π 1 π 0 π¬ 0 π 0This is what I think too, but I canβt find a direct citation or reference to βwhen we took down XYZ group, we found they had a robust R&D practiceβ.
Have you ever come across something like this?
β’ What these signals might reveal about attacker workflows
β’ How defenders can use this information to act early
Read the full research report here:
www.greynoise.io/resources/ea...
Always happy to discuss or answer questions about the data β just drop a line at research@greynoise.io.
Three high-profile former CISA employees have joined @istorg.bsky.social to keep working on Secure by Design and figure out a stable future for the CVE program. www.politico.com/newsletters/...
28.07.2025 15:00 β π 16 π 9 π¬ 0 π 2This is what it make me think about theonion.com/this-war-wil...
22.07.2025 00:06 β π 1 π 0 π¬ 0 π 0Australia would disagree.
08.07.2025 14:54 β π 1 π 0 π¬ 0 π 0Saving this to read tomorrow.
16.06.2025 01:10 β π 2 π 0 π¬ 0 π 0Iβm partial to βHabsburg modelsβ to describe this model - en.m.wikipedia.org/wiki/House_o...
05.06.2025 15:52 β π 2 π 0 π¬ 0 π 0New episode of DISCARDED featuring the great @alexcp.bsky.social discussing the 2025 Verizon DBIR! Join us for hot takes, insights into the current threat landscape, interesting findings about vulnerability exploitation and third-party risk, and so much more.
podcasts.apple.com/us/podcast/d...
Dan is a brilliant writer. This summarizes my feelings about Generative AI in general, and the next time someone asks me if I will be using Generative AI in my work, Iβll just send them this link.
24.05.2025 03:27 β π 5 π 0 π¬ 0 π 0Gonna tackle βday oneβ? The RNG is really brutal there.
07.05.2025 20:33 β π 0 π 0 π¬ 1 π 0It worked at least once on a custom model! bsky.app/profile/alex...
27.04.2025 16:23 β π 2 π 0 π¬ 1 π 0On the other hand, pro-AI people talk about it like theyβre trying to unload a shitty used car. βDoes it always work right? Absolutely not! Do you need to take extra annoying steps to receive worse results? Of course! But thatβs the real beauty of itβ¦β
26.04.2025 17:45 β π 2590 π 431 π¬ 59 π 12Hope you enjoyed it!
We really try to reward (or punish) the cover-to-cover readers with the jokes and footnotes.
as is tradition, I just published my commentary on this yearβs Verizon Data Breach Investigations Report: kellyshortridge.com/blog/posts/s...
as ever, I mix philosophy, market analysis, and lazy math to guide our #cybersecurity sensemaking.
thx @alexcp.bsky.social for the advance copy π€
Tenable contributed to the Verizon Business DBIR
Tenable contributed to the Verizon Business DBIR
#TenableResearch contributed to the 2025 #VerizonBusiness 2025 Data Breach Investigations Report (#DBIR) with data on the 17 widely exploited edge CVEs. Find out where patching still lags. Read our recap here: http://spr.ly/633272Z599
23.04.2025 13:11 β π 2 π 1 π¬ 0 π 0DBIR authors 1 x AGI 0
(It obviously does nothing on most of them but I found this result super amusing)
In all fairness, it is a good day for one of those: middle of the week, week before RSAβ¦
23.04.2025 15:22 β π 0 π 0 π¬ 0 π 0In all fairness, it IS a good day to release a report.
Middle of the week, week before RSA. Your marketing folks know whatβs up.
A minimalist report cover with a black background from GreyNoise titled βA Blindspot in Cyber Defense: How Resurgent Vulnerabilities Jeopardize Organizational Security.β The subtitle reads: βFrom loud waves to quiet revivals, attackers around the world are exploiting resurgent flaws in critical systems.β The background features a repeating pattern of line-drawn swans, with one swan highlighted in bright cyan, symbolizing an anomaly or standout threat among many.
We're in π competition with the DBIR but it is pre-RSAC "report season".
We took a look at "resurgent" vulns β CVEs published between 2010-2020 that cause real problems (and sometimes return from the dead like zombies) now.
I'll be dropping a larger thread [β¦]
[Original post on mastodon.social]
lol. Lmao even.
23.04.2025 15:10 β π 2 π 0 π¬ 0 π 0The 2025 #DBIR is out! Go get it.
Verizon.com/dbir
Iβm sorry to report the prophecy has not come to pass in the 2025 #DBIR.
Maybe next year will be a nice one.
New @censys.bsky.social video with me and the brilliant Ariana Mirian talking about finding various services on weird ports.
youtu.be/qr6Xdl9WfLM?...
Good times.
18.04.2025 01:45 β π 0 π 0 π¬ 1 π 0