Chris John Riley  

1.9K Followers
616 Following
1.8K Posts

I'm just this guy, you know!

- Views my own πŸ˜‡
- Security Advisor @ Stealth Startup πŸ‘”
- ex-Staff Security dino @ Google πŸ¦•
- Purveyor of fine whisky πŸ₯ƒ, hard mixes 🎧🎚️, & fresh bull πŸ’©
- Zurich πŸ‡¨πŸ‡­ / Valencia πŸ‡ͺπŸ‡Έ
- FI/RE

DJ Mixes https://mixcloud.com/c22dnb #dnb #DrumAndBass

Twitter :twitter:https://twitter.com/intent/user?screen_name=ChrisJohnRiley
Blog ✍️https://blog.c22.cc
GitHub :github:https://github.com/ChrisJohnRiley

Was (Not Was) β€” Hello, Dad...I'm In Jail
https://www.discogs.com/release/2623301-Was-Not-Was-Hello-DadIm-In-Jail

A 1992 compilation album drawing tracks from from the band's first four studio albums.

#Vinyl #NowPlaying

Just Announced for BSides Luxembourg 2026!
π—žπ—˜π—¬π—‘π—’π—§π—˜: π—œπ——π—˜π—‘π—§π—œπ—§π—¬ π—¦π—˜π—–π—¨π—₯π—œπ—§π—¬ 𝗝𝗨𝗦𝗧 π—˜π—«π—£π—Ÿπ—’π——π—˜π—— - Wendy Nather (@wendynather )

As identity ecosystems evolve, some challenges never quite get solvedβ€”delegation being one of them. But now, the stakes are higher than ever. With the rapid rise of non-human identities that don’t fit traditional system or application roles, organizations are facing a new layer of complexity. Even if you’re not actively using these β€œagents” yet, they’re already becoming part of the broader digital environment. The question is no longer ifβ€”but how you’ll manage them. It’s time to start making deliberate decisions about identity, access, and control in this expanding landscape.

Wendy Nather ( @wendynather ) is a strategist, research director, and former CISO with over 40 years of experience in IT operations and security. Her expertise includes identity and access management, threat intelligence, risk analysis, and security operations, shaped by leadership roles in financial services, government, and industry research.
πŸ“… Conference Dates: 6–8 May 2026 | 09:00–18:00
πŸ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
🎟️ Tickets: https://2026.bsides.lu/tickets/
πŸ“… Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg #IdentityManagement #CyberSecurity #IAM #DigitalIdentity #SecurityLeadership

There's a lot of discourse on Twitter about people using LLMs to solve CTF challenges. I used to write CTF challenges in a past life, so I threw a couple of my hardest ones at it.

We're screwed.

At least with text-file style challenges ("source code provided" etc), Claude Opus solves them quickly. For the "simpler" of the two, it just very quickly ran through the steps to solve it. For the more "ridiculous" challenge, it took a long while, and in fact as I type this it's still burning tokens "verifying" the flag even though it very obviously found the flag and it knows it (it's leetspeak and it identified that and that it's plausible). LLMs are, indeed, still completely unintelligent, because no human would waste time verifying a flag and second-guessing itself when it very obviously is correct. (Also you could just run it...)

But that doesn't matter, because it found it.

The thing is, CTF challenges aren't about inventing the next great invention or having a rare spark of genius. CTF challenges are about learning things by doing. You're supposed to enjoy the process. The whole point of a well-designed CTF challenge is that anyone, given enough time and effort and self-improvement and learning, can solve it. The goal isn't actually to get the flag, otherwise you'd just ask another team for the flag (which is against the rules of course). The goal is to get the flag by yourself. If you ask an LLM to get the flag for you, you aren't doing that.

(Continued)

Hungarian opposition leader Peter Magyar has accused the ruling government of using the Candiru spyware against his TISZA party

https://x.com/magyarpeterMP/status/2037113263238840702

Almost 7 years of silence.
Today, that changes.
March 23, 2026.
Follow to be among the first to know:
https://www.corelan.be/index.php/contact
Tick tock. It’s coming.

"Switzerland decision sets a precedent,
this is the most powerful element here.

When a neutral country renowned for financial security and data protection concludes that Palantir poses unacceptable sovereignty risks,
that assessment becomes ammunition for every European procurement decision.

(....)

Getting ghosted by Swiss bureaucrats just probably had to sting."

https://youtu.be/R5UMAt0bEzs?si=j7Ri02oE79SU0-Kz

Europe DONE With US Tech - Palantir CRASHES After Swiss Army Says NO

YouTube

We're (BBC) recruiting a Technical Product Manager to work in a team for which I cover architecture: BBC Media Analytics.

Scope: UK residents, full time
Location: Hybrid (1d/week in London)
Salary: Β£65-75k (35 hour week)
Closes: 2026-03-18 (apols, I just found out)

The team builds & runs our Media Analytics (logs, stats) service which runs on AWS & processes 10s of billions of data points per day inc. realtime stream telemetry from iPlayer/Sounds.

Shares/Qs welcomed

https://careers.bbc.co.uk/job/Senior-Product-Manager/39701-en_GB

Senior Product Manager

Senior Product Manager

We're Hiring!

We are currently looking for a Penetration Tester
and a Senior Red Teamer. Check out our open positions
and reach out if you think you’d be a great fit.

Here:
https://modzero.com/en/jobs/

Jobs

Metasploit Pro 5.0 is out now with a fresh UI and tons of improvements! Check out our announcement for details https://www.rapid7.com/blog/post/pt-announcing-metasploit-pro-5-penetration-testing-evolving/
The Face of Penetration Testing is Changing: Announcing Metasploit Pro 5.0.0

Announcing the long-awaited availability of Metasploit Pro 5.0.0, a fundamentally new approach to red teaming designed with the sole intention of staying ahead of ever increasingly capable threat actors.

Rapid7

A bit spammy, maybe, but not intended to be:

In Germany, a company that makes brooms and other cleaning utensils called Andreas BΓΌrsten @buersten is very active on the #Fediverse. During the many discussions here, they listened to the wishes of our weird and wonderful community. May I present: The "Regenbogen". Clean your house and patio in style. With a statement of inclusion :) (They only ship to Germany and no, I am not getting paid. I just *love* their approach)

https://buersten.de/Saalbesen-400-mm-Regenbogen-PET-Farbmix-Universalstielhalter-mit-Ueberwurfmutter-O-24-mm