Skip to content
← home

tag

#security

105 posts

The technical heart: vulnerability research, disclosure, threat analysis, the craft of finding and fixing

Security

What the Netflix ‘Zero Day’ series got right about incident response

That said, the widespread nature of the effects shown in the six-part series are definitely plausible. Industrial control systems and the infrastructure that supports them are riddled with zero-day vulnerabilities, alongside the more common "known, yet unpatched" n-day vulnerabilities.

18 May 2025 · 4 min read
Security

Bug Bounties, The Wanted Poster For Ethical Hackers — Future Secured Episode 35

Crowdsourced security empowers ethical hackers to protect digital assets, reshaping cybersecurity. Casey Ellis encourages entrepreneurs to lead with resilience, delegate wisely, prioritize health, and embrace innovation amid chaos for lasting impact and scalable success.

05 May 2025 · 4 min read
Security

The Original Bug Bounty: Alfred Hobbs and the Great Lock Controversy of 1851

Alfred Hobbs: The OG bug bounty hunter who cracked England’s ‘unpick-able’ locks. His breaker mindset exposed flaws, sparked innovation, and proved no system is perfect.

07 Mar 2025 · 5 min read
Security

NEBULA:FOG:PRIME – AI x Security Panel Discussion

It was an privilege to participate on this panel at the NEBULA:FOG:PRIME AI x Security Hackathon event on the 25th of January.

13 Feb 2025 · 1 min read
Security

A few security predictions for 2025

Security predictions for 2025: peacetime vs wartime cyber, hardware and IOT back in focus, AI as tool, target, and threat — and the slop firehose's arrival.

17 Dec 2024 · 2 min read
Security

Some thoughts about Typhoons

What's the deal with Volt Typhoon, Salt Typhoon, and Flax Typhoon - and what do we need to do?

12 Dec 2024 · 3 min read
Security

You're Soaking In It: Systemic Cyber Struggles

Chris Hughes, Wendy Nather, and Casey Ellis on systemic cyber struggles, the cybersecurity poverty line, and what regulation can actually shift the needle on.

14 Nov 2024 · 1 min read
Security

Bugs on a Plane: Implementing a Bug Bounty in an Airline IT/OT Environment

Bug bounty programs are a valuable tool for security efforts but only if they are correctly applied. This is particularly true for airlines who have to secure both the IT business systems and OT aircraft systems that enable the business to operate safely.

13 Jun 2024 · 6 min read
Security

The RSnake Show!

Recording this was a tonne of fun and we cover a LOT of ground - There's a general theme of system-level thinking, vulnerability and transparency, and the personal pursuit of potential through things like entrepreneurship. It's very much a backstory and #thoughtops conversation.

24 Aug 2023 · 2 min read
Security

Where the bloody hell were you — The Great 2020 COVID Bug-In

During Hacker Summer Camp, I was asked "where do you, uh, live now and stuff" a lot. Forgive this slightly indulgent post, but I wanted to blog a little bit of our story, and some of the thinking that went into executing our trans-pacific COVID bug-in back in 2020.

20 Aug 2022 · 9 min read
Security

9 Must-See Talks at #hackersummercamp 2022

Here's a list of the talks that I'm going to get myself along to at Blackhat and DEF CON this year, and why...

04 Aug 2022 · 3 min read
Security

Digital and Personal Self-Care at #hackersummersamp — "New Normalish" Edition

I usually write a piece for first-timers and newbies on how to get the most out of Hacker Summer Camp and how to stay safe digitally and physically. This tradition began in the early days of Bugcrowd, when DEF CON was part of new-hire induction.

28 Jul 2022 · 6 min read