adam's Avatar

adam

@appsec

security at pixee | ex-aws founder: kernelcon.org | dc402.org twitter: @clevernyyyy linkedin: /in/adamschaal/

86
Followers
37
Following
33
Posts
06.07.2023
Joined
Posts Following

Latest posts by adam @appsec

Automation for AppSec at AWS (Part 1) How automation and generative AI are transforming application security at AWS, from deterministic checks to context-aware reviews.

New blog post - Automation for AppSec
blog.adamschaal.com/posts/2026-0...

25.01.2026 04:22 πŸ‘ 2 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Rooting My Eight Sleep Pod 3 A technical deep-dive into rooting and customizing my Eight Sleep smart mattress.

The night of October 20th, I woke up ice-cold. My bed had cooled all the way to 55Β° F and I couldn't adjust it at all. The irony: this was due to an AWS failure. Read more about removing my bed's cloud dependency.

blog.adamschaal.com/posts/2025-1...

24.12.2025 04:37 πŸ‘ 2 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Preview
GitHub - clevernyyyy/CVE-2025-55182-Dockerized Contribute to clevernyyyy/CVE-2025-55182-Dockerized development by creating an account on GitHub.

I dockerized a proof-of-concept for CVE-2025-55182 (React2Shell) here - github.com/clevernyyyy/...

Original POC by github.com/msanft.

05.12.2025 01:32 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Super excited for the World Cup draw on Friday. ⚽️ πŸ₯…
Can't wait to see what matchups we can attend!

01.12.2025 02:36 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
BruCON 2025 – Beer, Waffles, and a Product Review Cabal Notes from BruCON in Belgium, our talk with Matt Virus, beer-and-waffles lore, and a solo CTF run to 22nd place.

Writing is something I'm always challenging myself to be better at. This fall, my friend @themattvirus.bsky.social and I were pleased to attend BruCON, a security conference in Belgium and I've finally managed to put together my BruCON review:

blog.adamschaal.com/posts/2025-1...

25.11.2025 19:41 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

I always appreciate the little details in the DEF CON 402 ornaments from @tvidas.bsky.social like this one from 2020. Hard to believe how long our community has been together, really thankful for the friends I've made in dc402.org. ⚑ talks in December!

15.11.2025 23:45 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image Post image

Yes, @themattvirus.bsky.social and I visited the Louvre on our trip to BruCON. Yes, we cased the jewels, and noted that their cameras were obsolete [1] for our talk, but no, we did not steal them.

[1] www.artnews.com/art-news/new...

23.10.2025 01:36 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 1
Post image Post image Post image Post image

Speaking at BruCON in t-minus 12 hours with @themattvirus.bsky.social. We've prepared as much as we can with waffles, beer, and club mate, we are almost fully Belgian now. πŸ‡§πŸ‡ͺ

25.09.2025 19:23 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 1
Post image Post image

Bluesky vs Twitter on my pixel fold.

26.07.2025 04:50 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

At AWS, our GenAI development is moving at πŸš€ warp speed. With new tools popping up faster than browser tabs in my macbook, my team created Nebula – a system to track all our GenAI initiatives.

Today, we just launched an AI assistant to help upload new tools to Nebula tracker.

21.06.2025 15:17 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
BruCON | Security and hacker conference and training BruCON is an annual security and hacker conference In Belgium with two days of an interesting atmosphere for open discussions of critical infosec issues, privacy, information technology and its cultur...

Thrilled to share that @themattvirus.bsky.social and I are speaking at BruCON this year! The lineup is πŸ”₯ so far and we can't wait to reconnect with our amazing European hacking friends. Always a highlight to be among that fantastic community.

www.brucon.org

04.06.2025 14:15 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
NIST Special Publication 800-63B NIST Special Publication 800-63B

🎯NIST's updated security guidelines finally hit the mark.

1. No more forced password changes
2. Longer passwords beat complexity rules
3. Security responsibility shifts to providers where it belongs.

Common sense security FTW.

pages.nist.gov/800-63-4/sp8...

02.06.2025 02:37 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Preview
β€˜Ted Lasso’ Is Coming Back Apple TV+ announced on Friday that the Emmy-winning comedy will return for a fourth season. Jason Sudeikis will be back to reprise the title role.

Believe.
www.nytimes.com/2025/03/14/a...

18.03.2025 01:08 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
ZonkSec - Overview ZonkSec has 42 repositories available. Follow their code on GitHub.

5/5 - Thankfully, github.com/ZonkSec was able to create a fork + PR which I could merge from GH mobile. Total downtime our our registration was something like ~12 mins from notification, but it was a stressful 12 minutes.

14.03.2025 04:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Inviting someone to private repo Β· community Β· Discussion #3151 I was not able to invite someone to join a private repository through the mobile app

4/n - To compound the issue, GitHub's mobile app doesn't support adding people into repos or organizations yet.

No really, since 2021.
github.com/orgs/communi...

14.03.2025 04:09 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

3/n - Except the only people who've made commits this year (including me) were afk for another few hours.

Luckily, we had set up our website to take commits and use GitHub actions to automatically publish. We just needed someone to find/replace, but... our team didn't have direct commit access.

14.03.2025 04:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Kernelcon 2025 Omaha area’s first and only fully-featured, community-driven hacker con. Kernelcon was established…

2/n - We then figured out that kernelcon.org uses the url reg.kernelcon.org to redirect to our eventzilla site. Unfortunately, something with the google domains -> square space move nuked our subdomain redirect.

Easy fix, we just needed to change our buttons to point directly to eventzilla...

14.03.2025 04:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Preview
Kernelcon (@kernelcon.bsky.social) OMAHA’S HACKER CON https://infosec.exchange/@kernelcon πŸ†Training: 4.1-2 🚦Con: 4.3-4 πŸ”€ New venue: Hilton downtown Omaha 🏎️ CFP IS closed! πŸ“ http://reg.kernelcon.org

1/n - Today at kernelcon.bsky.social, we were notified that our registration was down. We immediately jumped on our phones to check and sure enough, clicking our registration buttons led to a 503.

However, our eventzilla admin page was up, and we could access our event through that site, hmm?

14.03.2025 04:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Omaha Stylee
Omaha Stylee YouTube video by 311 - Topic

For 311 day, don't forget to kick it Omaha Stylee and get your tickets to @kernelcon.bsky.social!

youtu.be/rokq0CIfXXk?...

kernelcon.org

11.03.2025 12:52 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Kernelcon Agenda is LIVE!
kernelcon.org/agenda

Room block closes on March 7th, please go get your rooms and tickets now.

05.03.2025 16:32 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Exclusive: Hegseth orders Cyber Command to stand down on Russia planning The secretary of Defense has ordered U.S. Cyber Command to stand down from all planning against Russia, including offensive digital actions, sources tell Recorded Future News.

πŸ€¦β€β™‚οΈ What is going on?
therecord.media/hegseth-orde...

01.03.2025 01:59 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

I hate pointing out flaws in a system and the subsequent team expecting my team to own the outcome of escalating for a fix.

Ownership is maybe the most important trait of a team leader.

21.02.2025 17:27 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

More details on kernelcon.org/robo-race.

There might be some custom swag for participants who bring their own robot for the competition!

03.02.2025 00:05 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

This is really exciting... I can't wait to see what our community comes up with. Prizes for fastest and best dressed robot! And for the robo-curious we will have our own to play with.

23.01.2025 23:19 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 1
Post image Post image

Had a ton of fun speaking at Shmoocon this year, I really enjoyed this con and wish the best for Heidi, Bruce, and the volunteers in future endeavors!

13.01.2025 18:12 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

I'm loving my Rivian so far. I picked up the Tri-motor in Storm Blue.

If you're interested in an EV, especially one not produced by Elon, we each get $750 if you use my referral code.

code: ADAM1508922

Now that they've teamed up with VW, I think they'll be even more popular.

#rivian

28.11.2024 02:49 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Wow, this is crazy. A "researcher" uses an LLM to find a vulnerability in curl that is COMPLETELY hallucinated. What a waste of time.
hackerone.com/reports/2199...

18.10.2023 18:29 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

Had a great time in Germany with @themattvirus.bsky.social speaking at Chaos Communication Camp. I would love to come back in four years!

19.08.2023 22:48 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

My wife and I every time I have an upcoming talk. Looking forward to #cccamp23!

31.07.2023 03:28 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image
28.07.2023 22:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0