Magoo Profile Banner
Ryan McGeehan Profile
Ryan McGeehan

@Magoo

Followers
6K
Following
318
Statuses
1K

Writes "Starting Up Security" @ https://t.co/Rv0MaSThQ1, tweets horror stories @badthingsdaily

Joined March 2009
Don't wanna be here? Send us removal request.
@Magoo
Ryan McGeehan
3 months
@jeremiahg Yeah, either interpretation would have a pretty useful answer IMO, so I'm curious which it ends up being. Subscribed.
0
0
5
@Magoo
Ryan McGeehan
3 months
@jeremiahg Oh, I see. Said differently: An even smaller subset of of vulns that appear in KVEs actually result in claims. This is what the correct suggestion is, right? Where my mind went, was that certain CVEs caused claims that were not present in KVE, which is not what you meant
1
0
0
@Magoo
Ryan McGeehan
3 months
@jeremiahg Clarifying question: This suggests some amount of CVE's with observed ITW exploitation that are not also formally accounted for in KEV data?
1
0
1
@Magoo
Ryan McGeehan
3 months
Ramping up on bluesky 🦋:
0
0
0
@Magoo
Ryan McGeehan
4 months
RT @cryps1s: I'm thrilled to announce that I've joined as CISO, alongside @embeddedsec, at @OpenAI. Security is germane to OpenAI's missio…
0
81
0
@Magoo
Ryan McGeehan
4 months
In the wild exploit in Firefox, disclosed and fixed within 25 hours.
0
2
2
@Magoo
Ryan McGeehan
4 months
My "Starting Up Security" writing correlates to my caffeine intake which has dropped off over the last few years. Today I got tricked into an actual coffee, so drafts are open. Taking any requests, just DM ☕️
0
0
4
@Magoo
Ryan McGeehan
5 months
RT @clintgibler: “Detection is a problem I describe as deceptively tractable.” @Magoo on 🔍 Prioritizing Detection Engineering Proposed i…
0
2
0
@Magoo
Ryan McGeehan
5 months
@ErrataRob @lcamtuf Seems less likely that an interdiction added explosives and relied on a known vuln to trigger it. More likely, while introducing explosives, introduced a trigger at the same time so it could be triggered at a more predictable time. Was it additional hardware, or malware?
0
0
1
@Magoo
Ryan McGeehan
5 months
Tweet media one
0
0
0
@Magoo
Ryan McGeehan
5 months
I wrote about how detection engineering should be prioritized in a security program. Feedback and discussion welcome!
1
35
153
@Magoo
Ryan McGeehan
6 months
The boring security management stuff. 🤣 Managing a quarterly security review: Feedback welcome as usual.
0
0
0
@Magoo
Ryan McGeehan
6 months
Should CVE-2024-38063 be more widely discussed? It's a zero click IPv6 RCE (????). Am I just not reading this right? Normally there's a of panic about ITW exploitation, exposed hosts, and wormability for a vuln like this. I gotta be missing something.
7
3
33
@Magoo
Ryan McGeehan
7 months
RT @christinacaci: 1/ Thrilled to announce we’ve raised $150mm Series C at a $2.45bn post valuation led by @sequoia alongside our existing…
0
50
0
@Magoo
Ryan McGeehan
9 months
Offensive work, detection engineering, and compliance are especially common sources of painful imbalances. Easy to argue to include others too. My written commentary has mostly been on negative imbalances, but they can be framed positively too.
0
0
1