Nic Fillingham ๐ฆ๐บ๐บ๐ธ
@nicfill
Followers
2K
Following
3K
Media
147
Statuses
5K
@msftSecResponse + @msftBlueHat + Podcast co-host. Not an expert; good at asking questions. Dad of a #T1D How can I help?
Carnation, WA
Joined February 2007
BlueHat Asia Call for Papers deadline extended! You now have until September 14 to submit your talk for BlueHat Asia in Bengaluru, India on November 5โ6! Share your insights on security research, emerging threats, and more. Donโt miss your chance to be part of the community.
1
2
3
Donโt miss your chance to be part of the BlueHat Asia community in Bengaluru this November! Submit your talk by September 5 to share your insights on emerging security threats, novel research findings, and more. โฌ๏ธSubmit your paper by September 5 โฌ๏ธ https://t.co/qJDNVhXhJo
The Call for Papers is now open for BlueHat Asia in Bengaluru, India, taking place on November 5 - 6, 2025! This is your chance to showcase your thought leadership in vulnerability and mitigation, emerging security threats and techniques, novel research findings, calls-to-action
0
4
12
One week ago, we came together at the MSRC Researcher Celebration during Black Hat to honor the incredible community that helps keep Microsoft secure. From meaningful conversations to Clippy through the decades on display, it was a night to connect and celebrate your
1
6
22
Weโre proud to partner with Microsoft Most Valuable Researchers (MVRs) like Azure Yang (@4zure9) from Cyber Kunlun, whose collaboration has driven meaningful changes in Windows Secure boot. At Black Hat, Azure shared research exploring remote attack surfaces in the Windows boot
0
7
63
The Call for Papers is now open for BlueHat Asia in Bengaluru, India, taking place on November 5 - 6, 2025! This is your chance to showcase your thought leadership in vulnerability and mitigation, emerging security threats and techniques, novel research findings, calls-to-action
0
3
13
Save the Date: BlueHat Asia Weโre bringing BlueHat back to India, this time in Bengaluru on November 5 - 6, 2025. Stay tuned for more details. We hope to see you there! #BlueHatAsia
1
2
18
Microsoft has released security updates for all supported on-premises SharePoint Server versions. Cloud-hosted SharePoint is not affected. We strongly urge customers to apply these updates immediately to protect against active exploitation. Our latest blog also shares insights
Microsoft is sharing details from ongoing investigations of threat actors exploiting vulnerabilities targeting on-premises SharePoint servers. Linen Typhoon, Violet Typhoon, and Storm-2603 have been observed exploiting the vulnerabilities:
0
17
36
Missed BlueHat India 2025? Catch up now! Talks from Microsoft & global security experts are live on the @msftsecresponse YouTube channel: https://t.co/wF3ahT8xJW From AI threats to ransomware ops, mobile red teaming and more, donโt miss these deep-dive sessions. #BlueHatIndia
0
5
19
Thank you to everyone who joined us this week. BlueHat is more than just a conference, itโs a community. One where the security community from inside and outside Microsoft come together as peers to share, challenge, and learn from one another. From deep technical talks to
0
6
19
We kicked off Day 2 of BlueHat India with opening remarks from Charu Srinivasan, CVP of Engineering at Microsoft, who explored the rise of Agentic AI: autonomous agents that will soon play a role in nearly every system we build. Her message was clear: defenders must secure these
0
3
15
Tom Gallagher (@secbughunter), VP of Engineering at MSRC, opened BlueHat India with a question: โAnyone here a threat actor?โ ๐ He went on to highlight the recent Microsoft Zero Day Quest, which saw over 100 researchers qualify. Today, we're proud to welcome three standout
0
8
17
Loved being on the #BlueHat podcast with @ZenOneSec and @nicfill! Grateful for the chance to share my bug bounty journey and experiences with @msftsecresponse. Hope it inspires some future hackers out there!
In the newest episode of The BlueHat podcast, weโre joined by Dhiral Patel (@dhiralpatel94), Senior Security Engineer at ZoomInfo and one of MSRCโs Most Valuable Researchers (MVR). After a hacked Facebook account sparked his interest in security, Dhiral dove into ethical
0
1
2
Two weeks ago, some of the world's top security researchers gathered on the Microsoft campus for the first-ever Zero Day Quest Onsite Hacking Event, focused on finding and reporting vulnerabilities across Cloud and AI. From nonstop bug hunting and deep dives with Microsoft
2
8
28
At the Zero Day Quest Onsite Hacking Event closing ceremony, held at the iconic Space Needle, we celebrated the outstanding achievements of the security research community. ๐ง๐ผ๐ฝ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐ฟ๐ฐ๐ต ๐น๐ฒ๐ฎ๐ฑ๐ฒ๐ฟ๐ ๐ฏ๐ ๐ฏ๐ผ๐๐ป๐๐ ๐ฐ๐ฎ๐๐ฒ๐ด๐ผ๐ฟ๐ ๐๐๐๐ฟ๐ฒ+: Anonymous
3
4
27
Thatโs a wrap on the final day of the inaugural Zero Day Quest. Researchers hacked until the very last minute, 11:59 AM PT, bringing three days of collaboration, creativity, and bug hunting to an exciting close. Afterward, we explored the best of Seattle on a city tour, then
0
7
27
Day 2 of #ZeroDayQuest brought together brilliant minds from around the world for more hands-on hacking and meaningful community connections. Catch the energy in our recap video! @secbughunter @tinderj_ @ZenOneSec @0xdea
0
16
38
We're seeing pure adrenaline, incredible collaboration, and great mental stamina on full display at our first-ever Zero Day Quest Onsite Hacking Event. Whether you're participating or cheering from the sidelines, this recap is packed with the energy, highlights, and hacker
1
13
30
Day 1 of the Zero Day Quest Onsite Hacking Event is in the books and weโve kicked off Day 2. We welcomed top security researchers from around the world to Microsoftโs Redmond campus for a day of live hacking, collaboration, and connection. Researchers worked side-by-side with
3
15
37
Bounty is good, but swag is ๐๐ฅ Kicking off Zero Day Quest 2025 with some amazing swag! Huge thanks to @msftsecresponse for the warm welcome! Letโs hunt some bugs! Day 1 at #ZeroDayQuest
1
2
75