Steve Ragan (SteveD3) 

3.2K Followers
2.5K Following
571 Posts
Father. Grandpa. Geek. Former journalist.
Hacker.
Security researcher.
Board of directors @CircleCityCon (RIP)
CMO @BSidesLV
Member: @CuratedIntel
Twitterhttps://twitter.com/SteveD3
GitHubhttps://github.com/steved3
Keybasehttps://keybase.io/steved3
Websitehttps://steved3.io/about/
Fedifiedhttps://fedified.com/@SteveD3

Things are spinning up. First All Hands call happening tonight. Expect additional details soon, including room blocks, CFP, and more.

Save the dates: August 3rd, 4th, and 5th, 2026

RE: https://infosec.exchange/@SteveD3/114660976520491326

FTR, it was a great show. The whole cast was awesome. The lounge was really cool too. It was themed to look like the Slytherin common room. I wish all shows on Broadway had something like this.

Gregg Kellogg passed away this week. Most of you won’t know him but he was a good guy, very likable, and he worked tirelessly, as do many people, to develop internet/web standards so all of this just works.

These people don’t get a lot of recognition so, I just thought you should know.

RIP Gregg.

I wrote some mid-week words for my newsletter (and now blog!) ~ this week in security ~ on Google today sounding the alarm over a new "widespread" wave of Salesforce data thefts targeting customers of Salesloft Drift.

Excited to share this with premium tier subscribers. ❤️

https://this.weekinsecurity.com/a-new-wave-of-data-thefts-are-targeting-salesforce-instances/

Salesforce instances targeted in new 'widespread' wave of data thefts

Salesloft confirmed a security incident affecting customers who integrate its Drift product with Salesforce. It's the latest wave of data thefts targeting Salesforce's instances.

~this week in security~

I'm amused. Just finished moving 11k archives (~20GB). Went to do another backup.

rsync -avzP --delete

The script did what it was asked to do... now I get to move all 11k archives a second time b/c of --delete. Lesson? You can't copy and paste your way out of everything.

Got tickets to go see Tom Felton in Harry Potter and the Cursed Child at the Lyric Theatre in November.

Should be a fun little pre-holiday trip.

Obfuscated JavaScript in Phishing Kits - Technical Outcast

While sorting phishing kits this morning, I discovered a clever use of JavaScript to hide an infostealer.

Technical Outcast
ChatGPT is generating some dark phishing images.