Jeremi M Gosney 

@epixoip@infosec.exchange
8.5K Followers
799 Following
1,053 Posts

Distinguished Engineer at GEICO Cyber. Your friendly neighborhood password cracker. Member of #TeamHashcat  and the #Hashcat core development team. I also help run #DEFCON #PasswordVillage, @BSidesLV, and @hushcon.

Former CEO of Terahash, creator of the Brutalis. Author of hmac-bcrypt and Pufferfish2 🐡. OIF/OEF veteran 🪖 and former 97E 🕵🏼‍♂️. Married to @baybedoll💍 and living in Texas 🤠

Primarily interested in #cybersecurity, #infosec, #appsec, #passwords and #passwordcracking, #pentesting, #hacking, #distributed computing, #hpc, #gpgpu, #unikernels, #Linux development, #Rust, #C, #Perl, #Flatpak     

Githubhttps://github.com/epixoip
Twitterhttps://twitter.com/jmgosney

AI-powered features are the new attack surface! Check out our new blog in which LMG Security’s Senior Penetration Tester Emily Gosney @baybedoll shares real-world strategies for testing AI-driven web apps against the latest prompt injection threats.

From content smuggling to prompt splitting, attackers are using natural language to manipulate AI systems. Learn the top techniques—and why your web app pen test must include prompt injection testing to defend against today’s AI-driven threats.

Read now: https://www.lmgsecurity.com/are-your-ai-backed-web-apps-secure-why-prompt-injection-testing-belongs-in-every-web-app-pen-test/

#CyberSecurity #PromptInjection #AIsecurity #WebAppSecurity #PenetrationTesting #LLMvulnerabilities #Pentest #DFIR #AI #CISO #Pentesting #Infosec #ITsecurity

Are Your AI-Backed Web Apps Secure? Why Prompt Injection Testing Belongs in Every Web App Pen Test | LMG Security

Discover how prompt injection testing reveals hidden vulnerabilities in AI-enabled web apps. Learn real-world attack examples, risks, and why your pen test must include LLM-specific assessments.

LMG Security

So, the Samsung Galaxy S25 isn't supposed to be launched until February 7. I pre-ordered a Galaxy S25 Ultra from #TMobile on February 1 with an estimated shipping date of February 6, thus expecting it to arrive on launch day with overnight shipping.

It arrived today, February 3, four days before the launch date  

#samsunggalaxys25 #samsunggalaxys25ultra #android

This is a public service announcement to never ever use Oracle
When you start firing people for telling the truth, you’re not running a government—you’re running a cover-up.

Suddenly, out of nowhere, a declassified World War II-era CIA guide to sabotaging fascism in the workplace has become one of the most popular free ebooks on the internet:

https://www.404media.co/declassified-cia-guide-to-sabotaging-fascism-is-suddenly-viral/

Declassified CIA Guide to Sabotaging Fascism Is Suddenly Viral

The World War II-era "Simple Sabotage Field Manual" is full of steps that office workers can take to resist leadership.

404 Media

“When a clown moves into a palace, he does not become a king.
The palace becomes a circus.”

#Inauguration2025

ugh no fair, @baybedoll still has a little bit of #tiktok !

This is not a win for privacy, this is a massive loss for all Americans as the country descends into the internet censorship that has plagued so many of the other unfree countries around the world.

It isn't the time to act smug or superior just because that censorship happened to target an app you disliked today. They will have no problems coming for the services you do like tomorrow.

#tiktok #privacy #censorship

ugh no fair, @baybedoll still has a little bit of #tiktok !
🤬