mattjay Profile Banner
Matt Johansen Profile
Matt Johansen

@mattjay

Followers
44K
Following
77K
Media
5K
Statuses
46K

Helping Secure the Internet | Long Island elder emo surviving in ATX | Expect: infosec current events, DFIR, appsec & cloudsec - and me!

Join 30k+ subscribers:
Joined June 2008
Don't wanna be here? Send us removal request.
@mattjay
Matt Johansen
2 years
🚨 Exciting thing🚨 I'm getting back to my content creation roots. I've missed blogging, podcasting, and community engagement from back before I worked for big companies with scary PR teams. So. I'm launching a newsletter called Vulnerable U.
Tweet card summary image
vulnu.com
Infosec's favorite weekly newsletter for news, tools, and tips with 30,000+ CISOs, founders, change-makers, and straight up hackers.
19
40
269
@mattjay
Matt Johansen
3 days
I’m seeing a ton of chatter on this one.
@Mandiant
Mandiant (part of Google Cloud)
3 days
āš ļø Alert: Widespread data theft campaign by UNC6395. The threat actor is targeting Salesforce instances via Salesloft Drift, targeting sensitive data. Organizations should investigate, rotate credentials, and harden access controls. More here:
Tweet media one
2
1
28
@mattjay
Matt Johansen
3 days
This is a big shift
@AnthropicAI
Anthropic
3 days
We’ve developed Claude for Chrome, where Claude works directly in your browser and takes actions on your behalf. We’re releasing it at first as a research preview to 1,000 users, so we can gather real-world insights on how it’s used.
1
2
14
@mattjay
Matt Johansen
6 days
RT @IceSolst: > vulnerability reported.> we don’t know who owns the service.> last owner quit 2 years ago.> find the team that it was hande….
0
20
0
@mattjay
Matt Johansen
7 days
RT @Numbers_STN: @mattjay Yep. and all of the major messenger apps use ImageIO in the background.
0
2
0
@mattjay
Matt Johansen
7 days
Share with your Apple user friends and family. When they say under active exploitation that means they have evidence of hacked devices in the wild using this. This update protects you. Stay safe.
0
0
7
@mattjay
Matt Johansen
7 days
Vulnerability is in ImageIO and is an out of bounds write issue. Super common in these types of exploits. Processing a malicious image result in memory corruption. This smells like zero click to me.
Tweet media one
3
3
14
@mattjay
Matt Johansen
7 days
It’s everything not just iOS. iPadOS. macOS all versions. Get to patching!
Tweet media one
1
2
8
@mattjay
Matt Johansen
7 days
šŸ“£ Hi it’s me the guy who tells you to not ignore your Apple updates today. Zero day under active exploitation usually means spyware going after journalists, politicians, and activists. Or even just at the border crossings.
Tweet media one
2
34
91
@mattjay
Matt Johansen
7 days
RT @mattjay: Decent list for vibe coders / indie hackers who aren't necessarily security focused. Since my follower list is more security….
0
1
0
@mattjay
Matt Johansen
8 days
Decent list for vibe coders / indie hackers who aren't necessarily security focused. Since my follower list is more security focused, Let's crowdsource a bit. What did he miss? (Keep it easy for indie devs to follow/implement).
@levelsio
@levelsio
11 days
HOW TO SECURE YOUR RAW DOG VPS SERVER. - Disable password auth, use only key-based auth (both Hetzner and Digital Ocean do this by default usually).- Install fail2ban on SSH.- Enable unattended-upgrades with auto reboot.- Enable firewall in Hetzner/Digital Ocean dashboard and.
1
1
10
@mattjay
Matt Johansen
10 days
RT @dinodaizovi: This is an interesting case study because it concretely shows that you have to go further than allowlisting known/trusted….
Tweet card summary image
cloud.google.com
We discovered China-nexus threat actors deployed custom backdoors on Juniper Networks’ Junos OS routers.
0
34
0
@mattjay
Matt Johansen
10 days
RT @tuckner: Cursor installs extensions from Open VSX now. Do you know what possible risks that introduces? Matt and I got down to business….
0
2
0
@mattjay
Matt Johansen
11 days
RT @levelsio: HOW TO SECURE YOUR RAW DOG VPS SERVER. - Disable password auth, use only key-based auth (both Hetzner and Digital Ocean do th….
0
100
0
@mattjay
Matt Johansen
11 days
I’m hard out on certifications.
8
0
24
@mattjay
Matt Johansen
11 days
We go through it all and how to protect yourself:. Cursor quietly switched it's IDE extension marketplace - malware popping up already.
0
0
8
@mattjay
Matt Johansen
11 days
I recently talked to @tuckner about browser and IDE extension security. Did you know Cursor switched its extension marketplace behind the scenes? I didn’t!
Tweet media one
2
5
35
@mattjay
Matt Johansen
12 days
Tweet media one
@dsxf234161
weather
12 days
if youre in texas prepare to die.
1
0
12
@mattjay
Matt Johansen
12 days
It’s impossible to be sad on a water slide.
9
0
25
@mattjay
Matt Johansen
15 days
Woke big tech requires you be poly to get engineering job. When will the madness stop.
@courtneygons
CG
16 days
AWS paying up to $152k for an entry level Cloud Engineer role 😳 . Need TS/SCI w/ poly tho.
17
3
66
@mattjay
Matt Johansen
15 days
Actual research.
Tweet media one
0
0
3