Tod Beardsley

2.2K Followers
905 Following
210 Posts

Shmethical #Hacker. #Research mucky-muck at @runzero. #Election worker. #CVE bagman. #Metasploit collaborator. Briefly a fed. Anti-Fascist. #FriendofDeSoto. #Podcaster

Hey, my attorney and wife (same person) is running for US Congress. Donate here!

https://secure.actblue.com/donate/claire-reynolds-1

I post here for me, mostly around #infosec / #cybersecurity.

Intro: https://infosec.exchange/@todb/109270457002321619

Websitehttps://hugesuccess.org
GitHubhttps://github.com/todb
OnlyFanshttps://onlyfans.com/sudo_whoami
Jobby jobhttps://www.runzero.com/authors/tod-beardsley/
CallsignKT0DBK
Pronounshe/him

I have hacked time itself in order to learn about the current and future state of CVE.

Check it out at RSAC Moscone South in what you would call “this” morning.

https://path.rsaconference.com/flow/rsac/us26/FullAgenda/page/catalog/session/1755470003779001WEMM

US26-Header

RSAC Conference

So are we going to get #ICE goons to help out with #CISA too?

I’m sure they’d be just as great at the #KEV

#BSidesSF part two!

The vendor hall is basically an ear worm factory and I am kinda loving it.

(Needs more Oklahoma and Music Man.)

Need some downtime today during #BSidesSF 2026? Escape to the runZero sponsored Bar & Chill Out Space (inside) or Lounge (outside) from 9 AM-5:30 PM PT.

Stop by, say hello, and snag some swag! 👉 Remember, two complimentary drink tickets were provided at registration!

Okay this #BSidesSF is shaping up to be pretty ridiculous.

RE: https://infosec.exchange/@hdm/116251294033499013

Well that was fun. You can catch the recording here:

https://www.runzero.com/resources/runzero-hour-28/

Just amigos talkin OT, pretty chill and fun. Thanks again, chat, for keeping things fun and spicy.

Tomorrow on the runZero Hour: Deep dive into OT retroencabulation

Join @todb, @rk, & Ulises Fuentes Venado from GuidePoint Security for an in-depth discussion on the evolving security challenges facing OT environments.

📅 March 18 | 1 PM ET / 10 AM PT
Register: https://www.runzero.com/research/runzero-hour/

Hey internet. I'm hiring for a vuln researcher/exploit dev/hacker type.

US preferred, UK okay.

Reports to me, in the research engineering team at @runZeroInc.

HMU if you're interested, and then fill out the thing. If you use a name different from the one I know you as, please be clear about that so I can tag the (internal) recruiter with that info.

Listing:

https://www.runzero.com/about/careers/apply/?gh_jid=5829740004

Apply

runZero

This is "news" but it strikes me weird.

TL;dr: sometimes super expensive #Stingray gear shows up on eBay. My question: who's the audience for this? $50k-$100k is out of reach for hacker types, or organized crime, who can build their own for much less, and foreign adversaries or domestic cops will buy their own from normal surveillance tech companies, not eBay.

https://san.com/cc/ice-uses-this-device-to-surveil-cell-phones-you-can-buy-one-for-50000

(Added CW because the card for the news story is scary militarized cops)

ICE uses this device to surveil cell phones. You can buy one for $50,000

A surveillance device commonly referred to as a Stingray was listed on eBay for $50,000 before being removed from the platform.

Straight Arrow News

All candidate-side election software for Democrats, near as I can tell, was invented entirely during the first Obama campaign, and then kinda sorta maintained and expanded since then. Just mountains and mountains of tech debt, and every time the vendors ship a feature it breaks like 3 other things.

Oh, real IT support, I've kinda missed you as a job.

Anyway, I'm curious if the Republican side is similar (also, it's funny that there's no one vendor for both sides; the vendors in this space definitely pick a lane and stick to it -- see ActBlue vs WinRed).