60 Followers
113 Following
77 Posts
Software Engineer and Collaborator working at Censys
PronounsHe/him/his
Sitehttps://aidan.davisholland.com/
GitHubhttps://github.com/thehappydinoa
Twitterhttps://twitter.com/thehappydinoa
Very cool context and research from @censys on those #kubernetes IngressNightmare bugs that dropped yesterday.
https://censys.com/ingress-nightmare/
IngressNightmare: Kubernaughty Kubernetes

Censys
💧 @Bloomberg EXCLUSIVE: “In many cases, these aren’t protected with any kind of authentication... They are quite literally sitting on the public internet for anybody who happens to find them to come and manipulate them as they will.” https://www.bloomberg.com/news/newsletters/2024-08-07/cyber-researchers-push-water-oil-utilities-to-fix-weak-spots?srnd=undefined #censysresearch
Bloomberg - Are you a robot?

Censys Security Researchers Emily Austin (@mle) and Ariana Mirian (@amirian) will be speaking today at B-Sides Las Vegas!

Emily will talk about "Defensive Counting: How to quantify ICS exposure on the Internet when the data is out to get you" at 3 p.m. today at "Ground Truth."

Ariana will present on "What Do We Learn When We Scan the Internet every hour?" at 3:30 p.m. today at "Ground Truth," as well.

See you there! https://bsideslv.org/talks

Talks - BSides Las Vegas

BSides Las Vegas is a nonprofit organization formed to stimulate the Information Security industry and community.

Going to @BSidesLV? Don't miss these talks from @censys and @greynoise researchers while you're there👇

🔸 Defensive Counting: How to quantify ICS exposure on the Internet when the data is out to get you (shameless self promotion, I'll be presenting this!)
Ground Truth, 15:00 Tuesday
Abstract: https://bsideslv.org/talks#LNDN9Z

🔸 What Do We Learn When We Scan the Internet every hour? by @amirian
Ground Truth, 15:30 Tuesday
Abstract: https://bsideslv.org/talks#DVYNJJ

🔸 Discover the Hidden Vulnerability Intelligence within CISA’s KEV Catalog by @ntkramer
Ground Floor, 14:30 Wednesday
Abstract: https://bsideslv.org/talks#WXAEQR

Hope to see you there!

#SecurityResearch #InternetMeasurement #KEV #CVE #ICS #BSLV #blackhat #defcon

Talks - BSides Las Vegas

BSides Las Vegas is a nonprofit organization formed to stimulate the Information Security industry and community.

🚨CVE-2024-6387 / CVSS 8.1 alert! Critical vuln in OpenSSH (versions <4.4p1 & 8.5p1-9.8p1) on glibc-based Linux. Attackers could execute code, install malware, bypass firewalls & more.🔧Patch now to OpenSSH 9.8p1! 🔍Detect with Censys queries: https://censys.com/cve-2024-6387/l
Latest CISA Directive Highlights Importance of Attack Surface Visibility

Earlier this week, CISA issued a new BOD requiring federal civilian agencies to enhance protections for devices on government information systems. What does this mean for attack surfaces across the internet?

Censys

Join us for an expert panel on cutting through the #AI hype in #cybersecurity 5/30 @ 2pm ET! @hrbrmstr, @dandroid_grant + @iagox86 discuss:

✅ Building effective AI
✅ Data requirements for success
✅ Top use cases transforming threat research
https://info.greynoise.io/webinar/ai-for-cybersecurity

GreyNoise Webinar - AI for Cybersecurity

In this webinar, we will tackle the pressing AI questions: how can we deploy AI that really works? How can practitioners use it most effectively? What security outcomes will see little change—and which ones will be transformed?

Jordyn keeps using "expert" so loosely, but at least Daniel, @iagox86, and @thehappydinoa will be there as real experts to back me up.
https://infosec.exchange/@greynoise/112485573764435808
GreyNoise (@[email protected])

Join us for an expert panel on cutting through the #AI hype in #cybersecurity 5/30 @ 2pm ET! @[email protected], @[email protected] + @iagox86 discuss: ✅ Building effective AI ✅ Data requirements for success ✅ Top use cases transforming threat research https://info.greynoise.io/webinar/ai-for-cybersecurity

Infosec Exchange

Hey Philly! We are teaming up with @censys for a Threat Hunting Workshop + Happy Hour TOMORROW! Catch top researchers sharing killer insights on tools like Censys, GreyNoise & CensysGPT from 12-4:30pm. Then hang out for drinks. 🥂 Limited spots left!

https://buff.ly/4aBtGLq

Threat Hunting Workshop | Censys

Censys.com has published an interesting writeup based on their scans for Sisense deployments. Offers a closer look at Sisense's market and geography. Also gives me an idea...

https://censys.com/sisense-a-look-at-industry-and-geography/

Sisense: A Look at Industry and Geography

Censys

Following the Nov. 2023 Aliquippa Water Authority Hack, Censys researchers have observed 149 additional internet-exposed Unitronics services and devices across the U.S. Read more about their findings: https://censys.com/water-ics-exposures-highlight-vulnerabilities-in-critical-infrastructure-security/

#CensysResearch

Water ICS Exposures Highlight Vulnerabilities in Critical Infrastructure Security

New Censys research into exposures across water ICSs and other operational technology devices highlights larger security issues facing internet-connected critical infrastructure systems throughout the U.S.

Censys