Might be meβ¦ π€£
Might be meβ¦ π€£
You as well!
Thatβs awesome! Had shmoo folks visit my light display this week that kept their conference swag and it all flashes with my light show!
Iβve been following offensive AI developments with great interest over the last year. I donβt think defenders yet appreciate how rigorously capable Agentic AI will test their attack surface. New blog with Morgan Adamski and David Ames on the topic.
www.pwc.com/us/en/servic...
Itβs a slippery slope Allan!
I testified to Congress that I believe the PRC operations prepositioning for disruptive effects in the US make it a bad idea to use TP-Link routers in millions of American homes. New reporting- the government appears to have reached the same conclusion!
www.washingtonpost.com/technology/2...
Thrilled to share that Iβve joined Starseer as an advisor. Starseer is making AI models into transparent, understandable systems and helping to secure deployments while generating auditβready documentation. Make them a partner to secure your AI solutions.
www.starseer.ai?utm_content=...
lol. Perfect capture!
Wow. Spain is putting salt typhoon out of business. They are just going to hand it all to them: Huawei contracted to manage their wiretapsβ¦.
therecord.media/spain-awards...
Wow. Spain is putting salt typhoon out of business. They are just going to hand it all to them: Huawei contracted to manage their wiretapsβ¦.
therecord.media/spain-awards...
Have you thought about your companyβs Agentic AI as a possible insider threat? Try this new perspective that I co-authored.
explore.pwc.com/autonomous-a...
I was interviewed by the National Cryptologic Foundation on forensics in critical infrastructure (and a lot of other stuff!) and it was a very fun chat. They have an interesting assortment of interviews on their podcast and I really recommend you check them out: open.spotify.com/episode/5kzz...
Predatory Sparrow strikes again. This time they drained funds from an Iran-based crypto exchange. Beyond theft, they targeted trust, undermining a key tool Iran uses to evade sanctions. Nobody with options will keep crypto assets there now.
www.jpost.com/middle-east/...
This is a big deal. Predatory Sparrowβs past cyber attacks on Iranian steel plants and gas stations have demonstrated tangible effects in Iran. Disrupting the availability of this bankβs funds, or triggering a broader collapse of trust in Iranian banks, could have major impacts there.
"At RSAC last year, I told people: 'Don't worry about the zero-day AI armageddon,' but I am increasingly worried that AI is going to be a good bug finder this year, [and] an exploit developer in the near future," Rob Joyce told me at RSAC.
Not a lot of people make me look small!
The point guards I played with came to my shoulders. Magic Johnson easily had me in height and reach. Wow. For scale, Iβm 6β4β (6β5β in the day) and not a small guy!
As I testified to congress, Iβm worried about TP-Link products!
Breaking: DOJ βcriminal antitrust investigation into pricing strategies by TP-Link Systems Inc, a California-based router maker with links to China whose equipment now dominates the American marketβ
www.bloomberg.com/news/article...
Since being part of the CSRB that reported on security shortcomings, I've seen tangible efforts improving the security at Microsoft. The Secure Futures Initiative is making progress: www.microsoft.com/en-us/securi...
TP-Link origins: βChinese corporate records and government announcements show β¦ much of the research, development and manufacturing operations of β¦ new US company remain in China, entrenched in the countryβs state-sponsored technology ecosystemβ
t.co/mMFw4LkUDv
How should you think about security related to the threat of Quantum Computers? Businesses need to start their multi-year journey now. In my role as PwC US Cyber, Risk & Regulatory Senior Fellow, I offered some thoughts here:
www.pwc.com/gx/en/issues...
Groanβ¦.
Huawei not only uses predatory pricing practices to undercut the more secure western products but it appears they use bribery tooβ¦
www.reuters.com/world/europe...
AI empowered software development is advancing at an astonishing pace. Check out my story about creating a custom iPhone app in only 30 minutes. New tools enable friction-free development with remarkable efficiency. It is the dawn of a new era...
www.joycecyber.com/my-post
I got to testify to the House Select Committee on the Chinese Communist Party last week. One focus area was the threat from TP-Link routers. Having 60% of the US consumer Wi-Fi market flooded with devices that get automatic software updates from the PRC is a risk we can't accept.
Always great to be on the Risky Business podcast! Give it a listen here!
This week's special guest co-host is @rgblights.bsky.social, who'll be joining @metlstorm.risky.biz and I to talk through the week's news. Then we'll chat with SpecterOps about new features they've built in Bloodhound to address NTLM-related risks to your network
NTLM.. still a problem
In 2025 :(
My opening statement to the House Select Committee on the CCP
drive.google.com/file/d/1fwlE...
Former top NSA cyber official: Probationary #firings βdevastatingβ to cyber, #nationalsecurity. Rob Joyce emphasized during a House hearing how important probationary employees are to #NSA efforts to counter #China and other threats in #cyberspace.
cyberscoop.com/joyce-china-...