Royans Tharakan

25 Followers
621 Following
63 Posts
I've been in the Tech industry for all my life, and currently work for Google. My posts are my personal opinions and do not reflect that of who I work for. And I do sometimes have unintentional biases in what I write based on who I work for. I'm human.
homepagehttps://royans.net/
linkedinhttps://www.linkedin.com/in/royans/

FauxSSH - ssh login attempts on the honeypot

https://github.com/royans/fauxssh

FauxSSH - LLM backed SSH Honeypot.
https://github.com/royans/fauxssh/
GitHub - royans/fauxssh: FauxSSH - An LLM Powered SSH Honeypot

FauxSSH - An LLM Powered SSH Honeypot. Contribute to royans/fauxssh development by creating an account on GitHub.

GitHub

Made significant progress in improving the signals to find most relevant Cyber security news and highlight them on #flagthis . With a little help from #GoogleGemini, I implemented a new clustering algorithm to find patterns faster.

https://flagthis.com/

FlagThis: CyberSecurity news

Flagthis is a CyberSecurity, Malware/breach/Ransomware and Cryptography news trend detector and reporter which tracks 1000s of important security related news sites and actively reports the most talked about issues.

I've seen a lot of takes about the latest move to Bluesky. I wanted to try and collect my thoughts about this in one place. I think Bluesky is fascinating, but I also worry about many parts of it. If it becomes the new "Twitter", I think I'm OK with that, but I'll be very quick to cut the cord if it ever starts sucking.

https://anderegg.ca/2024/11/15/maybe-bluesky-has-won

Maybe Bluesky has “won”

November has sucked so far. One upside of the terrible nonsense is that more people are fleeing X. Many are choosing Bluesky. I’ve seen a bunch of takes about this recently, but I keep seeing things I disagree with. I figure that’s a good enough excuse to write more about this weird-assed social network.

anderegg.ca

Now you can sort the Security News stories based on recency instead of popularity. Click on Top/Latest at the bottom of the page to change the order.

https://flagthis.com/

FlagThis: CyberSecurity news

Flagthis is a CyberSecurity, Malware/breach/Ransomware and Cryptography news trend detector and reporter which tracks 1000s of important security related news sites and actively reports the most talked about issues.

https://cloud.google.com/blog/topics/threat-intelligence/time-to-exploit-trends-2023/

Fascinating post from Mandiant about its vulnerabilities it analysed in 2023. Here is the kicker: 41 vulnerabilities it analyzed were exploited after the patches came out. And time-to-exploit which used to take months in the last decade has dropped down to an average of 5 days.

What this means: Its not sufficient for service providers to rollout patches in a timely manner. Its also important for them to make it easy to get it deployed quickly so that the exposure reduces significantly.

How Low Can You Go? An Analysis of 2023 Time-to-Exploit Trends | Google Cloud Blog

Mandiant analyzed 138 vulnerabilities that were disclosed in 2023 and that we tracked as exploited in the wild.

Google Cloud Blog
❗️Breach Update: Stolen Linux source code is continuing to proliferate in underground criminal and anti-establishment channels. For those unfamiliar, Linux is a collection of software that underlies many cheap electronics such as Android phones and WiFi vibrators.
Every device will get hacked. The only question is "when?".
FlagThis: CyberSecurity news

Flagthis is a CyberSecurity, Malware/breach/Ransomware and Cryptography news trend detector and reporter which tracks 1000s of important security related news sites and actively reports the most talked about issues.

https://flagthis.com - fun to see the hashtags changing as new news stories come in.
FlagThis: CyberSecurity news

Flagthis is a CyberSecurity, Malware/breach/Ransomware and Cryptography news trend detector and reporter which tracks 1000s of important security related news sites and actively reports the most talked about issues.