Katie Moussouris (she/her/she-hulk/she-ra)๐ŸŒป's Avatar

Katie Moussouris (she/her/she-hulk/she-ra)๐ŸŒป

@k8em0.bsky.social

Founder & CEO LutaSecurity @payequitynow MIT&Harvard visiting scholar, @MasonNatSec fellow, 1/2 Chamoru, 1/2 Greek all-American hacker

20,653 Followers  |  1,098 Following  |  1,240 Posts  |  Joined: 24.04.2023  |  1.7477

Latest posts by k8em0.bsky.social on Bluesky

Iโ€™m so inspired by young people getting involved in their communities, running for office, & driving progressive change.

โ€œJust do something & youโ€™ll end up where you want to go.โ€
โ€” Vivek Prakriya, Redmond City Councilmember & youngest elected in a city with over 75k residents in America

Go Vivek!

02.02.2026 01:30 โ€” ๐Ÿ‘ 10    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Solidarity Pledge Let's stand strong and stand together - with the people of Minnesota demanding #ICEOUT this Friday. With our communities as we demand a country that works for us, not the billionaires. And with our na...

#solidarity #iceout #generalstrike
actionnetwork.org/forms/solida...

01.02.2026 23:28 โ€” ๐Ÿ‘ 11    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

The FBI was able to access Washington Post reporter Hannah Natanson's Signal messages because she used Signal on her work laptop. The laptop accepted Touch ID for authentication, meaning the agents were allowed to require her to unlock it. storage.courtlistener.com/recap/gov.us...

31.01.2026 17:59 โ€” ๐Ÿ‘ 1182    ๐Ÿ” 472    ๐Ÿ’ฌ 25    ๐Ÿ“Œ 121
Preview
AI found 12 of 12 OpenSSL zero-days (while curl cancelled its bug bounty) โ€” LessWrong This is a partial follow-up to AISLE discovered three new OpenSSL vulnerabilities from October 2025. โ€ฆ

Have we reached the stage of โ€œmany AIs make all bugs shallowโ€?
Great writeup on AI, open source, & bug bounties by @stanislavfort.bsky.social cofounder of AISLE.

โ€œMass adoption collapsed the median quality (โ€œslopโ€ killed bug bounty..) but.. raised the ceilingโ€

www.lesswrong.com/posts/7aJwgb...

30.01.2026 19:18 โ€” ๐Ÿ‘ 12    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Oh node! ๐Ÿ˜ฑ Low quality bug reports breaking another Open Source project. Trying to throttle the flood using a bug bounty platform reputation system & forking bug reporters with low signal score toโ€ฆthe OpenJS Foundation Slack?! Oh node indeed ๐Ÿ˜ฉ

23.01.2026 00:38 โ€” ๐Ÿ‘ 19    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Video thumbnail

You donโ€™t have to run for office to help shape what happens next. ๐Ÿ‘€

Becoming a delegate is one of the easiest ways to show up, speak up, and help decide the future of our party. Self-nominate here: Tinyurl.com/26DemDelegate

LD 48 Dems need you. Yep, you. โœจ

Sign up and get in the room. ๐Ÿ’™๐Ÿ—ณ๏ธ

21.01.2026 04:19 โ€” ๐Ÿ‘ 7    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

AI was the accelerant on a perverse incentive fire sparked by bug bounty platforms that reward spray & pray. Both open source & orgs without dedicated vuln response teams get overloaded when they offer cash there. cURL is right to leave AI shark-infested waters to start fresh.

21.01.2026 14:55 โ€” ๐Ÿ‘ 38    ๐Ÿ” 12    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 2

I think there is a discussion to be had here, but it shouldn't be taken out on people who are *using* AI.

we do need to have a reckoning about how UBI gets passed and funded, with taxation of the profits of those developing these labour-replacing/augmenting models. but yelling at users doesn't help

10.01.2026 19:40 โ€” ๐Ÿ‘ 31    ๐Ÿ” 3    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
(over a photo of protesters holding โ€œICE OUTโ€ signs) ICE OUT FOR GOOD
WEEKEND OF ACTION: JANUARY 10-11

(over a photo of protesters holding โ€œICE OUTโ€ signs) ICE OUT FOR GOOD WEEKEND OF ACTION: JANUARY 10-11

Weโ€™re mobilizing across the country this weekend to honor Renee Nicole Good, demand accountability for ICEโ€™s killing of Renee, and make visible the human cost of ICEโ€™s terror: docs.google.com/document/d/1...

09.01.2026 03:11 โ€” ๐Ÿ‘ 2571    ๐Ÿ” 1326    ๐Ÿ’ฌ 85    ๐Ÿ“Œ 348

โ€œUnbeknownst to Smith at the time, she had no right to voteโ€ฆ much less run for office. Though she was born in a U.S. territory, and has a U.S. passport and Social Security number, she is not a U.S. citizen.

American Samoa is the only US territory where people are born without automatic citizenshipโ€

08.01.2026 20:12 โ€” ๐Ÿ‘ 44    ๐Ÿ” 25    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Preview
Not going to quote this AI slop or comment on it so that their gambit for engagement farming doesnโ€™t algorithmically pay off, but these arenโ€™t the cyber experts youโ€™re looking forโ€ฆ | Katie Moussouris ... Not going to quote this AI slop or comment on it so that their gambit for engagement farming doesnโ€™t algorithmically pay off, but these arenโ€™t the cyber experts youโ€™re looking forโ€ฆ | 11 comments on Li...

๐ŸŽถ When youโ€™re sloppy and you know it, clap your non existent hands because youโ€™re AI ๐Ÿ‘๐Ÿผ๐Ÿ‘๐Ÿผ

www.linkedin.com/posts/kmouss...

06.01.2026 19:58 โ€” ๐Ÿ‘ 11    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Puerto Rico enters the chat with a line forming behind it, including Guam, the US Virginia Islands, Guam, the Northern Marinara Islands....

06.01.2026 19:35 โ€” ๐Ÿ‘ 38    ๐Ÿ” 10    ๐Ÿ’ฌ 3    ๐Ÿ“Œ 1

โ€œWhy would free money make people work more? Because it takes money to make money. Basic income acts like venture capital for regular people.โ€

06.01.2026 16:28 โ€” ๐Ÿ‘ 112    ๐Ÿ” 44    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Hearty chicken stew in a pot with carrots, chicken, green beans, and kale

Hearty chicken stew in a pot with carrots, chicken, green beans, and kale

Happy #SouperBowlSundat to all who celebrate ๐Ÿฒ ๐ŸŽ‰

www.eatingwell.com/recipe/26574...
(I used bone broth, doubled it & the & thickener, & added fresh thyme, kale ๐Ÿฅฌ, & salt)

28.12.2025 21:43 โ€” ๐Ÿ‘ 20    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

The ensloppification* of the internet continues, with VC backing

*/ht Cory Doctorow for โ€œenshittificationโ€

17.12.2025 18:26 โ€” ๐Ÿ‘ 21    ๐Ÿ” 6    ๐Ÿ’ฌ 4    ๐Ÿ“Œ 0

โ€œโ€œUBI = a foundationโ€ฆincome is earned on top. A poverty-line UBI is not โ€œthe replacement paycheck for the post-work apocalypse.โ€ .... It prevents the worst outcomes, stabilizes consumer demand, & gives ppl leverage to say no to exploitationโ€

17.12.2025 17:59 โ€” ๐Ÿ‘ 47    ๐Ÿ” 15    ๐Ÿ’ฌ 4    ๐Ÿ“Œ 0

TIL about robot karaoke!

14.12.2025 04:27 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

The "basic" in universal basic income does not mean low. It means basic as in base. Foundational. Primary. First. Basic income is an income floor. All other income adds to it. It's basic income because it's everyone starting income.

12.12.2025 20:23 โ€” ๐Ÿ‘ 187    ๐Ÿ” 61    ๐Ÿ’ฌ 6    ๐Ÿ“Œ 6

I find your posts very hinged. Very hinged for these unhinged times.

12.12.2025 19:50 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Dark Web, Underground Hiring Blurs Lines Between Legit and Illicit Work Some skilled tech and cybersecurity pros are turning to underground forums for work, drawn by lucrative but illegal opportunities. Experts caution that these jobs blur the line between legitimate andโ€ฆ

When it comes to developing skills through underground organizations, recent geopolitical issues have also helped muddy the waters of how some professionals think about ways to earn a living, said Casey Ellis, founder at @Bugcrowd.

www.dice.com/career-advic...

12.12.2025 00:27 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Weโ€™ve seen other orgs attempt 3rd party bug bounties, thinking it will help their ecosystem become safer. Inevitably, the safety of software depends more on the maturity of the org producing it than how many bugs are reported to it. Bug foie gras isnโ€™t the safest path to maturity

11.12.2025 18:42 โ€” ๐Ÿ‘ 32    ๐Ÿ” 7    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

When I started Microsoft Vuln Research in 2008, we found out just how few orgs were ready for vuln disclosure. When I started Microsoftโ€™s 1st bug bounty in 2013, I never imagined it would grow to paying for 3rd party bugs. I hope the 3rd parties were warned & OSS gets tested patches supplied to them

11.12.2025 18:24 โ€” ๐Ÿ‘ 32    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Preview
Why bug bounty schemes have not led to secure software | Computer Weekly Computer Weekly speaks to Kate Moussouris, security entrepreneur and bug bounty pioneer, about the life of security researchers, bug bounties and the artificial intelligence (AI) revolution.

I spoke with @billgoodwin.bsky.social of @computerweekly.bsky.social on NDA bug bounties failing to increase security & effects of gov disclosure requirements on nat security, plus how AI threatens the future human expert pipeline & why UBI may be our best bet
www.computerweekly.com/news/3666362...

09.12.2025 14:11 โ€” ๐Ÿ‘ 22    ๐Ÿ” 8    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Heli Tiirmaa-Klaar a blonde woman dressed in black with a pink blazer delivers a keynote on stage at CyberThreat London 2025

Heli Tiirmaa-Klaar a blonde woman dressed in black with a pink blazer delivers a keynote on stage at CyberThreat London 2025

โ€œAI is helping to identify over 70% of targets. Sometimes AI is hallucinating targets. So we always need humans in the loop.โ€ - Heli Tiirmaa-Klaar in her SANS CyberThreat keynote โ€œCyber war by proxy: What Ukraine teaches us about
defense coalitions and digital policy at scaleโ€

04.12.2025 10:30 โ€” ๐Ÿ‘ 19    ๐Ÿ” 6    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
[BSL2025] KEYNOTE Trey Darley - Rick & Morty Walk Across Mordor
YouTube video by BSides Lisbon [BSL2025] KEYNOTE Trey Darley - Rick & Morty Walk Across Mordor

โ€œwhy the red team keeps winning: not because they are strongerโ€”but because the blue team keeps mistaking comfort for capability.โ€ โ€” @treyka.bsky.social reveals wisdom in history, physics, & Rick & Morty in his brilliant Bsides Lisbon keynote

youtu.be/egg_83hh0ZA

24.11.2025 17:27 โ€” ๐Ÿ‘ 17    ๐Ÿ” 6    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1

Youโ€™ve given us all so much of yourself. Please save some for you. You deserve it. We love you

23.11.2025 04:27 โ€” ๐Ÿ‘ 16    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Rich Mogull on the Cloudflare Outage, Resilience, and Single Points of Failure
YouTube video by Decipher Rich Mogull on the Cloudflare Outage, Resilience, and Single Points of Failure

The internet is not a network, it's a small handful of platforms held together with rock n roll and silly string (@k8em0.bsky.social โ„ข) and sometimes it falls down. On the @deciphersec.bsky.social pod, @rmogull.com helped me figure out why.
youtu.be/2118EJ4Gb5s?...

22.11.2025 15:40 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
a group of people are dancing together with the words everybody shots shots shots ! Alt: a group of people are dancing together with the words everybody shots shots shots !

Glad youโ€™re getting protected! ๐Ÿ™Œ๐Ÿผ

18.11.2025 00:57 โ€” ๐Ÿ‘ 5    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

I know. Iโ€™ve already alerted everyone on that page with their (sometimes misspelled) name URL on that site

16.11.2025 05:03 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

No our fake profile pages are all there under /teams/[first]-[last] deliberately not linked from the main site. They know exactly what they are doing.

16.11.2025 04:53 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

@k8em0 is following 20 prominent accounts