John U
jdu2600.bsky.social
John U
@jdu2600.bsky.social
He/him. Security Research Engineer @ Prelude Research.
Kernel bug details emailed.
September 11, 2025 at 5:15 AM
Has this episode been published yet?

The Airlock Digital interviews are the best. 😃
July 9, 2025 at 2:54 AM
Though software bugs are BAU.
So I’m more interested in who thought it was a good idea to deploy IT EDR on business critical OT systems.

Was this pushed by overly aggressive sales? Or did the CISOs not understand risk?
July 4, 2025 at 1:27 AM
You should clarify that it was caused by a bug in their kernel driver that was triggered when they forcibly globally deployed a bad content update with buggy unit testing and no integration testing.
July 4, 2025 at 1:21 AM
This is absolute 🔥- and will significantly harden the path to domain admin against common initial access vectors.

Is it looking likely to be the default for existing installs after upgrade, or just for new installs?
May 21, 2025 at 12:44 AM
When are you speaking at AISA PerthSEC though?
May 14, 2025 at 10:01 AM
Good luck.
The 1.11.0 update did not go well for me…
April 7, 2025 at 1:59 PM
Thanks for the shoutout to my research and tool!

Just a heads up that Get-InjectedThreadEx.ps1 (2022) was superseded by Get-InjectedThreadEx.exe (2023).

It's faster - and more comprehensive.
March 19, 2025 at 5:22 AM