haxorthematrix Profile Banner
haxorthematrix Profile
haxorthematrix

@haxorthematrix

Followers
29K
Following
124
Media
609
Statuses
9K

Haxor of things at Finite State. Paul's Security Weekly Podcast cohost. @[email protected] https://t.co/eee13eZMzB

Providence, RI
Joined December 2007
Don't wanna be here? Send us removal request.
@haxorthematrix
haxorthematrix
5 months
The U.S. Cyber Trust Mark will help consumers identify IoT products meeting baseline security standards. Finite State can guide you through pre-certification & beyond. Check out our blog & drop your questions below šŸ‘‰. #IoTSecurity #CyberTrustMark.
0
0
2
@haxorthematrix
haxorthematrix
7 months
RT @hevnsnt: 🚨 BIG NEWS! 🚨 @haxorthematrix and I were accepted to to #Shmoocon! We are bringing the #CYA - Cover Your Ass - A cheap BLE Tr….
0
6
0
@haxorthematrix
haxorthematrix
10 months
Ok, I know I posted this the other day, but now it is all official like:. Big news! I’m a #SANSDMA nominee! Voting closes Friday, October 4 and I’d love if you could vote for me. Cast your vote now:
Tweet media one
0
0
0
@haxorthematrix
haxorthematrix
10 months
Hey all, Security Weekly has been nominated for a SANS Difference Maker award, and we are in the top 5 finalists. Go vote for us!Ā  .
0
0
3
@haxorthematrix
haxorthematrix
1 year
RT @FiniteStateInc: Great turnout for @haxorthematrix session yesterday @automotive_iq #AutoCyberSec24 in Detroit. We're always so honored….
0
1
0
@haxorthematrix
haxorthematrix
1 year
RT @FiniteStateInc: The U.S. Cyber Trust Mark. āœ”ļø What is it? When will it go into effect? How will it impact manufacturers and consumers?….
0
1
0
@haxorthematrix
haxorthematrix
1 year
RT @d0tslash: Visualize the DJI 2017 AWS data leak with @CARTO to help grok what it may mean with regard to #HR2864 cc @EliseStefanik @RepS….
0
18
0
@haxorthematrix
haxorthematrix
2 years
RT @FiniteStateInc: Known as Looney Tunables (CVE-2023-4911), a newly disclosed vulnerabiilty impacts a vast number of Linux systems. While….
0
2
0
@haxorthematrix
haxorthematrix
2 years
Hey folks, @securityweekly and I have been nominated for TWO SANS Difference Maker awards, One for podcast and one for lifetime achievement! Go vote for us at (search for "paul" to make it easy to find both of our entries).
0
0
7
@haxorthematrix
haxorthematrix
2 years
RT @FiniteStateInc: 🚨 Vulnerability Alert: The WebP Library (CVE-2023-4863) 🚨 . New updates reveal that the vulnerability originally disco….
0
2
0
@haxorthematrix
haxorthematrix
2 years
RT @FiniteStateInc: We're thrilled to be participating in an upcoming webinar hosted by @SecurityWeek alongside our friends @microsoft. Joi….
0
1
0
@haxorthematrix
haxorthematrix
2 years
To all of my old hacker friends, don’t forget to refill your DEF CON ibuprofen… #DEFCON31.
0
0
8
@haxorthematrix
haxorthematrix
2 years
RT @FiniteStateInc: We've got a little something to help you make it to 5pm! Episode 21 of our podcast is out today! Eric & @haxorthematrix….
0
1
0
@haxorthematrix
haxorthematrix
2 years
RT @brianhalbach: Come hack some door access systems with me at Defcon’s @physsec
Tweet media one
Tweet media two
0
30
0
@haxorthematrix
haxorthematrix
2 years
They look great!.
@brianhalbach
Brian Halbach ā˜•ļø
2 years
The door-in-a-box systems were made by the wonderful @haxorthematrix I’m just their caretaker.
0
0
2
@haxorthematrix
haxorthematrix
2 years
If you do Kubernetes, you need this class. Jay does amazing work!.
@jaybeale
Jay Beale
2 years
Excited to be bringing my #Kubernetes Attack & Defense class back to Black Hat Las Vegas!. Students get a laptop to keep, full of CTF VMs (inc a K8S cluster) to #hack, gathering flags, applying defenses & breaking their attacks. #BHUSA @BlackHatEvents.
0
1
2
@haxorthematrix
haxorthematrix
2 years
While still in the public comment phase, I'm like that CVSS 4.0 scoring can improve how organizations can make decisions on risk. Benefits from the proposed metrics can contextualize actual exploitability, and how it applies to OT/ICS and even healthcare.
1
1
1
@haxorthematrix
haxorthematrix
2 years
In an apparent series of "Why does this thing need to be IoT enabled", Cyrill Künzi hacked his Philips Sonicare toothbrush: It is NFC enabled! . @atc1441 dropped the NFC password calculation: Now in the Proxmark Iceman firmware.
0
2
5
@haxorthematrix
haxorthematrix
2 years
One of my amazing coworkers jsut put together some thoughts on the new and upcoming CVSS 4.0 scoring. TL;DR: He's excited.
0
2
6
@haxorthematrix
haxorthematrix
2 years
We all knew it would happen. In this case it was not from l33t IoT hax, but a lack of segregation of duties; Support had access to all of the video whether they needed it or not. Further proof that security basics need to apply to the whole IoT ecosystem.
0
1
3