
Mark Manning
@antitree
Followers
3K
Following
39K
Media
156
Statuses
3K
Process isolationist, k8s hacker, ᴎo-prem pusher, syscall denier, container liberator 🔸Chainguard - Product Security 🔸Rochester 2600 🔸Former: Snowflake, NCC
Rochester,NY
Joined May 2008
I'm releasing my latest project today: https://t.co/h7fZ26HBiT Ever wonder if your custom seccomp profile is secure? Or is it actually less secure than RuntimeDefault? https://t.co/KZFn4IVeOd
2
10
24
🎥 Missed the action at @cloudvillage_dc during @defcon ? We’ve got you covered! All Day 1 talks are now live on our YouTube channel 📺 Catch up on the insights, hacks, and cloud security deep dives you might’ve missed! 👉 Watch now: https://t.co/BdfgwntM8x
#defcon33 #defcon
youtube.com
Cloud village is an open space to meet folks interested in offensive and defensive aspects of cloud security. The village is home to various activities like ...
1
6
8
$30K for a Prompt that breaks AI? 👀 Google just launched its new AI Vulnerability Reward Program - where for the first time, prompt injection is treated like a real security exploit. Fair reward or a bargain for a billion-dollar risk? 😮 They’re paying up to $30,000 for
3
15
150
Good to see folks at the @rocsecsummit for the short time I was there today. There's a good amount of work that goes into the TOOOL booth so thanks for those that donated money or time or interest.
0
0
3
Finally I was able to finish my script for Dark Web deanonimization!!! I let you the repo here for everyone to try it: https://t.co/tIgRKNmw5Q Thank you @zoomeye_team for your help! Those guys are amazing, and let me try a lot of different things with their services. And
github.com
Contribute to bash-bunny/dw_deanon development by creating an account on GitHub.
0
21
53
One of my favorite moleskine swags that I ever snagged is finally getting put into rotation. Capsule8 is now part of $BIGCOMPANY but at the time it was doing some cool, low level, defensive stuff using straight Linux kernel primitives before eBPF was even around.
0
0
6
In 2023, Signal was the first mainstream messenger to enable post-quantum cryptography. We’re still ahead of the (elliptical) curve, implementing a new hybrid PQ ratchet ensuring Forward Secrecy & Post-Compromise Security even in a post-quantum world.
signal.org
We are excited to announce a significant advancement in the security of the Signal Protocol: the introduction of the Sparse Post Quantum Ratchet (SPQR). This new ratchet enhances the Signal Protoco...
65
413
3K
Next meeting 10/3. We will unvail the next gen SNARKINT platform. Features: * Monthly news * Anonymous live commenting * Designed with a UI for 3x 10' tall monitors * Written without ever looking at the source 🤞 https://t.co/55169ybOJw
0
1
3
Good CISO / Bad CISO The key differences between effective and ineffective CISOs, by @philvenables (former Google Cloud, Goldman CISO) and Michael Aiello.
1
1
4
How Burp AI Works - Parsia 👾 Hakimian shows how by... proxying Burp through another Burp 😂 He walks through the Explore Issue, Explain This, and AI Recorded Login features, and Burp's agentic behavior.
1
3
16
I just submitted a talk currently named "Sandboxes, Seccomp, and Syscalls: Chasing Isolation in Kubernetes". IDK if it'll meet the vibe of DistrictCon but I'm going for it anyways. You should submit too!
CFP for #DistrictCon closes next week https://t.co/zzFLRB6r8j .
0
0
2
When your remote security team finally has an on-site.
11
64
1K
It's finally happened. Good riddance to a reasonable idea whose implementation caused more damage than good. https://t.co/plgWRXlNII
letsencrypt.org
Today we turned off our Online Certificate Status Protocol (OCSP) service, as announced in December of last year. We stopped including OCSP URLs in our certificates more than 90 days ago, so all...
0
0
2
Definitely don't go here because I want tickets https://t.co/N9nRP7XKI5
eventbrite.com
DistrictCon is a DC hacker con, focusing on hacking together and exchanging ideas over typical talk tracks.
0
0
1
I made a tier list of cybersecurity & hacking tools
41
106
1K