CISO at @sardineai. Treasurer of @OWASP Board of Directors. (he/him) qatta' mIghtaHghach.

Phoenix, AZ
Joined July 2009
@StateFarm for the love of god, you're a big company, get set up with the card updater programs at Visa and Mastercard rather than hassling me to enter my updated credit card. Or accept PayPal as a payment method. developer.mastercard.com/pro…
1
Replying to @miscsecurity
Now it’s working, although it requires a login to view.
Replying to @miscsecurity
Is the joke you put two spaces in the URL?
1
@peacock This email promotion doesn't work. Following the link goes to the normal signup page for $5.99/mo.
1
2
Replying to @securestep9
Fair enough.
Replying to @securestep9
Keep in mind Discord was not breached, but an unaffiliated site called discord.io was breached.
1
1
Replying to @miscsecurity
My oldest, when she was younger, thought a “trial” meant she’d try it, and if she liked it, she’s sign up. She was so surprised when charged a year subscription. No dark pattern needed, fine print was enough.
1
Bil Corry retweeted
Are you a #cybersecurity professional seeking a new career? If so, look no further. #OWASP is hosting its second annual Career Fair! Join us in September (EDT) OR in October (SGT). FREE to all job seekers! LEARN MORE: owasp.org/events/
3
6
Bil Corry retweeted
Exciting news! 🤩 Get ready to hear about the future of #AI and its impact on YOU at Global #AppSec Singapore - featuring Dr. Asankhaya Sharma, co-founder and CTO at Patched.codes, as our keynote! 🤩. Sign up now: singapore.globalappsec.org/ #OWASP
6
14
Thanks! There’s a thread here about it, you might post your solution.
So… anyone at @Apple know what this (zero-day?) vulnerability is that has fake devices and iCloud requests spamming everyone at Defcon? *eyes the Apple global mesh network suspiciously*
1
No, I got another pop-up elsewhere at DEFCON related to AppleTV. So there must be another setting, or maybe there isn’t a way to prevent it other than disabling Bluetooth.
1
3
Sounds good. Sign me up!
Next year we should plan an OG party. We can talk about penny whistles and confused deputy problems.
1
2
Bob and I caught up yesterday!
1
1
If you find yourself in the Phoenix airport, the fountains they provide taste like they’re straight from the Salt River. Probably better to scoop water out of the toilet.
1
Oh bummer, sorry I missed you. I’ll be at the OWASP booth this afternoon.
1
4
Replying to @miscsecurity
Summer camp has been fun. I still miss your entertaining talks!
1
I am extremely proud of the work we do at @sardine. You can’t imagine how grateful people are when we call them and prevent them from being scammed.
Stats from the UK show the epidemic of scams we see globally: 👉 Scams are up 24% in a quarter 👉 4 out of 5 originate on Tech platforms 👉 Goods not delivered 66% of all scams 👉 Highest losses to fake investment advisor scams We can fix this together if we focus on the issue. 🐟🐟🐟 For example, fake investment advisor scams. Bots, emulators, remote screen sharing via tools like TeamViewer or AnyDesk, and active calls in session are high-risk signals that a scam may be about to happen. We can stop many of these scams before they happen with device intelligence and behavior biometrics. 🐟🐟🐟 How it works, and we detect: 👀 Often the victim was being socially engineered over a Remote Access Tool (RAT) like TeamViewer or AnyDesk 👀 We add friction to a transaction if we spot any signs (signals) of a scam (like remote access tools being used on the device). 👀 We then queue up suspicious withdrawals in our case management system. 👀 Our customer's ops teams then call up the users whose transaction was slowed down. We've found we can capture 96% of those scam attempts with 9% false positives. We can stop scams together 🤝 #fraud #scams
2
Replying to @miscsecurity
I agree, many jobs have an education requirement but shouldn’t. That has the negative effect on our young, indebting them which prevents home ownership, starting a family, etc. FWIW I never require a college education for any of my roles. High school drop outs welcome to apply.
1
1