tricia, queen of house cyberly  

2.9K Followers
360 Following
1.2K Posts
Hi, i'm Tricia. She/Her. I like to say I'm a marketer who identifies as infosec.
Work life: I'm a technical writer in security research. I work with security research all day, every day. Any and everything from malware analysis to IPv6 and in between. Can confirm it is in fact, always DNS.
I work with security researchers to help tell their story in an effective way without degrading their technical acumen. It's a lot harder than it sounds, trust me. 
Real life: I have a theatre degree and am pretty much always singing. I have a Pomsky named Darth who i love to take pictures and videos of and put online. I am obsessed with true crime and jigsaw puzzles and occasionally do standup comedy.
Cross between real and work life: I occasionally write, record, and produce infosec parody songs.
Be kind, love yourself, and keep kicking ass.
Twitchhttps://www.twitch.tv/triciakickssaas
Websitehttps://triciakickssaas.com
YouTubehttps://www.youtube.com/c/triciakickssaas

Since the start of the year, the Russian state-backed ColdRiver hacking group has been using new LostKeys malware to steal files in espionage attacks targeting Western governments, journalists, think tanks, and non-governmental organizations.

https://www.bleepingcomputer.com/news/security/google-links-new-lostkeys-data-theft-malware-to-russian-cyberspies/

Google links new LostKeys data theft malware to Russian cyberspies

Since the start of the year, the Russian state-backed ColdRiver hacking group has been using new LostKeys malware to steal files in espionage attacks targeting Western governments, journalists, think tanks, and non-governmental organizations.

BleepingComputer

🚨ACTIVE EXPLOITATION ALERT🚨

Great work Kyle Lefton 🎉

The baddies at Akamai SIRT (Security Intelligence Response Team) have identified the first ITW exploitation of command injection vulns CVE-2024-6047 and CVE-2024-11120. It's a Mirai variant called LZRD (pronounced luh-zurd according to the interwebs)

blog post includes IOCs, full technical details and malware analysis. video is a silly interpretation bc i'm allergic to content without puns

https://www.akamai.com/blog/security-research/active-exploitation-mirai-geovision-iot-botnet

#security #research #malware #botnet #mirai #infosec #cybersec #wedding #singing #content

water damage: like moving, but worse

oh man i'm stoked to share this one.

so at akamai we have these huge research reports called the State of the Internet (SOTIs) that we put out. they're typically pretty high level, showing what we've seen in a particular topic since such a huge portion of the internet runs on our stuff lol BUT this time, they let us try something new.  

This time, we pulled together some pretty deep, low-level technical research on risk scoring, a few botnets, vpn abuse, XSS, and k8s and collated it into an anthology designed for the defenders themselves. this was honestly a passion project of sorts (y'all know my nerdy ass loves this shit) and it turned out pretty great i think. i'll probs share it a few different times, it's a dense report lol

the vpn stuff in particular is interesting - they found a permados vuln in fortiOS 👀

https://www.akamai.com/lp/soti/cybersecurity-defense-guide-2025

#security #cybersecurity #research #SOTI #akamai #vpn #rce #risk #kubernetes

In this episode of Breaking Badness, @triciakickssaas of @akamai_research joins @NotTheLinux and @neurovagrant to dive deep into the intersection of gaming culture, mental health, and cybersecurity. Tricia shares her journey from theater arts to cybersecurity research, her love for gaming, and her experiences tackling emotional toxicity in digital spaces.

The episode covers the concept of "mind patches," the role of community in digital wellness, and how gaming and workspaces mirror each other in their challenges with mental health and collaboration.

Tune in to hear her thoughts on reducing stigma, creating safe digital spaces, and embracing vulnerability for a healthier cybersecurity community.

Find it wherever you listen to podcasts:

Apple: https://podcasts.apple.com/us/podcast/leveling-up-mental-health-tackling-gaming-toxicity/id1456143419?i=1000686742213

Spotify: https://open.spotify.com/episode/13wfz9xwAdJm1tJ8HFhm0a

YouTube: https://www.youtube.com/watch?v=X4ZL34z4W1I&ab_channel=DomainTools

Web: https://www.domaintools.com/resources/podcasts/leveling-up-mental-health-tackling-gaming-toxicity-and-cybersecurity-burnout/?utm_source=LinkedIn&utm_medium=Social&utm_campaign=Tricia-Howard

Leveling Up Mental Health: Tackling Gaming Toxicity and Cybersecurity Burnout

Podcast Episode · Breaking Badness · 01/29/2025 · 36m

Apple Podcasts

pls appreciate i wore an aqua colored sweater to talk about aquabot

🚨Active exploitation attempt🚨
Akamai Security Intelligence and Response Team (SIRT) has identified a new variant of the Mirai-based Aquabot, dubbed Aquabotv3 keeping in line with the naming conventions of the first two.

it is using CVE-2024-41710, a command injection vulnerability that affects Mitel SIP models. There was a POC made public in august 2024 but this is the first time it's been seen actively seeking exploitation ITW.

not only that! This malware exhibits a behavior we have never before seen with a Mirai variant: a function (report_kill) to report back to the C2 when a kill signal was caught on the infected device.

We (we = the SIRT) have not seen any response from the C2 as of the date this was originally posted (Jan. 28, 2024).

Incredible work Larry Cashdollar and Kyle Lefton 🎉

Full technical analysis including IOCs:
https://www.akamai.com/blog/security-research/2025-january-new-aquabot-mirai-variant-exploiting-mitel-phones

#mirai #malware #activeexploitation #security #research #botnet

Features aren't always innocent 😉

In the most recent publication by Akamai Technologies' Security Intelligence Group, Tomer Peled found yet -a n o t h e r- vuln in K8s. this time in Log Query, and it can do some big bad.

Did you know that out of the 12 vulns found in Kubernetes since 2023, Tomer has found 4 of them?!?!? i work with the coolest people

anyway, couldn't resist a britney parody sooooooo

https://www.akamai.com/blog/security-research/2024-january-kubernetes-log-query-rce-windows

#kubernetes #k8s #vulnerability #security #cybersecurity #parody

i wish people understood that not wanting to talk about politics is a privilege. we have deemed some things “political” that are just human rights. by current societal definition, some people’s EXISTENCE is considered political.

idgaf you don’t wanna see “political stuff” on linkedin or at work or wherever. that’s life, baby. we are out in situations we don’t like all the time in the real world. curate your feed or stfu.

if i already bought your product i don't want a sales pitch post-sales, i want to learn how to use it.

is this typical practice to have a "discovery call" during a kickoff? like, wouldn't that have had been covered to get purchased....?