Jeff Bryner

860 Followers
1,083 Following
735 Posts
CISO, ex Mozilla security, MozDef, Kinectasploit, p0wnlabs, dark beer, deadlifting, he/him. http://github.com/jeffbryner https://m.soundcloud.com/0x7eff
https://github.com/harishsg993010/damn-vulnerable-MCP-server. <-- damn vulnerable MCP server arrives
GitHub - harishsg993010/damn-vulnerable-MCP-server: Damn Vulnerable MCP Server

Damn Vulnerable MCP Server. Contribute to harishsg993010/damn-vulnerable-MCP-server development by creating an account on GitHub.

GitHub

Since COVID prevented me from presenting at BSidesSeattle this weekend, I threw my slides online including text to speech, because why not?

How to start using AI in your security program: vibe GRC, risk analysis and conversations with your data.

https://blog.jeffbryner.com/bsidesSeattle2025/slides.html

Bsides Seattle 2025

“Everyone knows your location: tracking myself down through in-app ads” - A technical adventure/exploration of in-app tracking and how geolocation works. And yes, your location, and a whole lot more (like battery levels and screen brightness) are not private. Granular data on your device behavior is being collected and sold by tons of apps. #privacy #tracking #infosec #DataProtection #Data #DataPrivacy #apps #tracking

https://timsh.org/tracking-myself-down-through-in-app-ads/

Everyone knows your location

How I tracked myself down using leaked location data in the in-app ads, and what I found along the way.

tim.sh
https://blog.jeffbryner.com/2025/01/26/agentic-ai-a-tour.html <-- I took 6 (7 if you count google twice?) AI agent frameworks for a spin so you don't have to. Most are really easy to get started with. Some are amazing!
Taking 6 python AI agent frameworks for a spin

Agentic AI? AI has made a lot of advances recently, most notably the ability to call tools and link LLMs together to form agents. Nvidia describes this well:

Jeff Bryner .:. blog
Been a while since I have seen anyone say how neat age is (https://github.com/FiloSottile/age) so here's your reminder that age is neat.
GitHub - FiloSottile/age: A simple, modern and secure encryption tool (and Go library) with small explicit keys, no config options, and UNIX-style composability.

A simple, modern and secure encryption tool (and Go library) with small explicit keys, no config options, and UNIX-style composability. - FiloSottile/age

GitHub
seems about right
#jinjer
#leoKottke

neat article on bluesky engineering and their EMEs

https://newsletter.pragmaticengineer.com/p/bluesky

Building Bluesky: a Distributed Social Network (Real-World Engineering Challenges)

Bluesky is built by around 10 engineers, and has amassed 5 million users since publicly launching in February this year. A deep dive into novel design decisions, moving off AWS, and more.

The Pragmatic Engineer

Wow.. 11 years ago for kinectasploit? Seems like 20

https://www.youtube.com/watch?v=rbCB-OP9ncM

DEFCON20 Kinectasploit v2

YouTube
A concert is brewing!
https://www.swpc.noaa.gov/products/forecast-discussion# <-- TIL we have a space weather prediction center
Forecast Discussion | NOAA / NWS Space Weather Prediction Center