Katie Paxton-Fear's Avatar

Katie Paxton-Fear

@insider.phd

Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her

5,284
Followers
1,309
Following
431
Posts
26.06.2023
Joined
Posts Following

Latest posts by Katie Paxton-Fear @insider.phd

Preview
Job Application for Engineering Manager, Security Research Coverage at Semgrep SF, NYC, Boston, Denver

We’re hiring!!!

Want to come work with and grow the coolest security research team? Come join us, we’re looking for someone to help lead our engineering efforts, influencing roadmap, research direction and improvements in breadth and depth of the product

job-boards.greenhouse.io/semgrep/jobs...

22.10.2025 08:12 👍 2 🔁 1 💬 0 📌 0
Post image

Check out the latest Paged Out! Zine (page 22 under hardware) and you’ll find an article written by me about my little eink labelling project and the highs and lows of learning to CAD, solder and program an ESP32, how hard can it be?

04.10.2025 19:49 👍 8 🔁 0 💬 0 📌 0
Preview
API Hacking - Just Hacking Training (JHT) Dr. Katie Paxton-Fear's hands-on course is the ultimate guide to API Hacking! Covers the entire OWASP API Top 10 from entry point to exploit.

Link is here www.justhacking.com/... want to try before you buy? I've made 3 modules free so you can get a feel for what you're buying!

04.10.2025 05:03 👍 4 🔁 0 💬 0 📌 0

⚠️ IMPORTANT: This is NOT a "bug bounty" course and won't make you rich.

If you're just looking for a magic methodology to find a bug and get paid tomorrow, do not buy this course. This is about building deep, foundational API hacking skills, not about bug bounty hunting.

04.10.2025 05:03 👍 5 🔁 0 💬 2 📌 0

Everyone learns differently. The course comes packed with:
✅ In-depth Videos, A LOT of Videos tbh
✅ Written Content & Guides
✅ Quizzes
✅ Demos
✅ Hands-on Exercises
✅ Lab
✅ Q+A and Support From Me

04.10.2025 05:03 👍 2 🔁 0 💬 1 📌 0
Post image Post image

This course is 100% new content, designed for all skill levels. We start with "What is an API?" and go all the way from recon to reporting.

It includes videos, written guides, exercises, and a new, realistic lab environment to practice in. The hands-on lab is free on GitHub!

04.10.2025 05:02 👍 2 🔁 0 💬 1 📌 0
Post image Post image

I've spent a lot of time thinking about the best way to teach API security from the ground up for beginners.

Today, I'm excited to launch the result: My brand new API Hacking course on JHT. It's built to give you a deep, foundational understanding of how to test modern APIs. 🧵

04.10.2025 05:02 👍 12 🔁 1 💬 2 📌 0
Preview
API Hacking - Just Hacking Training (JHT) Dr. Katie Paxton-Fear's hands-on course is the ultimate guide to API Hacking! Covers the entire OWASP API Top 10 from entry point to exploit.

Link is here www.justhacking.com/... want to try before you buy? I've made 3 modules free so you can get a feel for what you're buying!

03.10.2025 17:01 👍 4 🔁 0 💬 0 📌 0

⚠️ IMPORTANT: This is NOT a "bug bounty" course and won't make you rich.

If you're just looking for a magic methodology to find a bug and get paid tomorrow, do not buy this course. This is about building deep, foundational API hacking skills, not about bug bounty hunting.

03.10.2025 17:01 👍 5 🔁 0 💬 1 📌 0

Everyone learns differently. The course comes packed with:
✅ In-depth Videos, A LOT of Videos tbh
✅ Written Content & Guides
✅ Quizzes
✅ Demos
✅ Hands-on Exercises
✅ Lab
✅ Q+A and Support From Me

03.10.2025 17:01 👍 2 🔁 0 💬 1 📌 0
Post image Post image

This course is 100% new content, designed for all skill levels. We start with "What is an API?" and go all the way from recon to reporting.

It includes videos, written guides, exercises, and a new, realistic lab environment to practice in. The hands-on lab is free on GitHub!

03.10.2025 17:01 👍 2 🔁 0 💬 1 📌 0
Post image Post image

I've spent a lot of time thinking about the best way to teach API security from the ground up for beginners.

Today, I'm excited to launch the result: My brand new API Hacking course on JHT. It's built to give you a deep, foundational understanding of how to test modern APIs. 🧵

03.10.2025 17:01 👍 10 🔁 1 💬 1 📌 0
Post image

I interviewed Farah Hawa at Diana Initiative in Las Vegas last month!

https://twp.ai/9PVWh8

27.09.2025 17:03 👍 4 🔁 1 💬 0 📌 0
Post image

📅 Join @insider.phd as she explores the realities of AI’s impact on AppSec:

🔹 Moving past uncertainty to see where AI truly fits in.
🔹 Automating repetitive tasks and cutting false positives.
🔹 Strengthening security, improving accuracy, reducing risk.

➡️ semgrep.dev/events/doubt...

18.09.2025 16:01 👍 1 🔁 1 💬 0 📌 0
I built my own Phone... because innovation is sad rn
I built my own Phone... because innovation is sad rn YouTube video by Marcin Plaza

My favourite genre on YouTube is engineers making stuff no one asked them to make, how hard can it be? The struggle is the fun

youtu.be/qy_9w_c2ub0

03.09.2025 10:06 👍 11 🔁 1 💬 0 📌 0
Preview
Security Rulez: I took my boss to Hacker Summer Camp and here’s what happened An extensible developer-friendly application security platform that scans source code to surface true and actionable security issues with AI-assisted SAST, SCA, and Secrets Detection solutions.

Link to register semgrep.dev/events/s... should be available on YouTube later this week!
2/2

02.09.2025 17:21 👍 3 🔁 0 💬 0 📌 0
Security Rulez: I took my boss to Hacker Summer Camp and here’s what happened on September 3rd, 2025 at 10:00 AM PT

Security Rulez: I took my boss to Hacker Summer Camp and here’s what happened on September 3rd, 2025 at 10:00 AM PT

Tomorrow I'll be live on this webinar chatting about Hacker Summer Camp with my boss. We'll recap everything that happened and all the talks we did, share our top moments and our highlights from this year as well as share Jayson's experience at his first hacker con!
1/2

02.09.2025 17:21 👍 4 🔁 0 💬 1 📌 0
Preview
Next-Gen Cyber AI We’re back with another high‑impact day of AI defense. Unlock hands-on sessions for AI security. Walk away with field‑tested playbooks.

Check out the Packt conference with my link (gives you 20% off) below, or perhaps just get your agent to come and give you the cliff notes 😉

Hope to see you (or your AI note takers) there on September 13th!

29.08.2025 09:22 👍 1 🔁 0 💬 0 📌 0

We'll move beyond the hype and look at the real, emerging threats:

Agents making hallucinated (but effective!) API calls.

"Hackbots" chaining unauthorized actions to breach systems.

Insecure frameworks that give attackers the keys to the kingdom.

29.08.2025 09:22 👍 2 🔁 0 💬 1 📌 0

What if the AI agent designed to help you... decides to hack you instead? 🤯

That's the chilling reality I'll be exploring in my upcoming talk: AI Agents Gone Rogue? Hackbots, AI Agents and The Future of the AI Attack Surface

29.08.2025 09:21 👍 6 🔁 0 💬 1 📌 0
be your own algorithm
be your own algorithm YouTube video by pagemelt

Ironically this video ended up in my eyeballs thanks to the YouTube algorithm but it is REALLY good and really speaks to some of my thoughts around algorithmic content being horrible for you, and I really recommend it 🔥🔥

youtu.be/Bdj14_jdumI

28.08.2025 21:17 👍 4 🔁 1 💬 0 📌 0
Preview
MCP: Model, Context… Propaganda? What security teams need to know about the latest hyped up AI tech An extensible developer-friendly application security platform that scans source code to surface true and actionable security issues with AI-assisted SAST, SCA, and Secrets Detection solutions.

Register here: semgrep.dev/events/m...

PS: This is my first official Semgrep webinar, so you better all attend so I look good! 😂 😂 😂 😂

18.08.2025 17:34 👍 6 🔁 1 💬 0 📌 0
Post image

MCP is all anyone can talk about right now, but uhh what is it? And what do you actually need to know about the latest hyped AI thing? Join me tomorrow as I dig into it as we cover a TL;DR for security teams and perhaps why it might actually be industry changing

18.08.2025 17:34 👍 2 🔁 0 💬 1 📌 0
Preview
a woman in a pink top says yes yes yes in front of a microphone ALT: a woman in a pink top says yes yes yes in front of a microphone
18.08.2025 15:38 👍 0 🔁 0 💬 0 📌 0
Preview
CT15 V3.0 Backpack - PATCHAHOLIC N420D RS (This is the version WITHOUT Water Bottle Pockets) We don't know when Patches originating from military activities became popular and became a bridge between the Carry, EDC, and Outdoor communities. N...

If you’re in the market for a bag, the bag is a Patchaholic from CTactical originally they sent me the wrong one but fixed it 2days later despite being in Vietnam so I really rate their customer service not to shill for them but I know folks might be interested ctactical.vn/products/ct1...

18.08.2025 15:37 👍 2 🔁 0 💬 0 📌 0
Post image

How to get rid of cash at DEFCON? Buy patches! Here are my DEFCON purchases (combined with a few I already had!

18.08.2025 15:37 👍 6 🔁 0 💬 1 📌 0

I did but it took me a while to update my LinkedIn, I’ll ping them to update it ty for letting me know

17.08.2025 14:20 👍 1 🔁 0 💬 1 📌 0
Preview
YOW! Australia

Link for conference info: yowcon.com

16.08.2025 21:10 👍 2 🔁 0 💬 1 📌 0

Officially booked flights to Australia! I’ll be in Melbourne, Brisbane and Sydney for YOW! Conference(s)
30 Nov - 6 Dec Melbourne
6 Dec - 10 Dec Brisbane
10 Dec - 14 Dec Sydney
If you want to meet up let me know! This will be my first time in Australia (and flying this far!)

16.08.2025 21:10 👍 9 🔁 2 💬 6 📌 0

We’re just VERY keen lol enjoy your vacation

13.08.2025 15:25 👍 1 🔁 0 💬 1 📌 0