Kevin Noble
kevinnoble.bsky.social
Kevin Noble
@kevinnoble.bsky.social
Cyber Security Consultant, enjoy all things infosec.
Reposted by Kevin Noble
As SBOMs slowly progress at the federal level and in enterprises, the rise of AI coding assistants is fueling optimistic—and, some experts argue, “kind of insane”—claims about a future with vulnerability-free software.

Check out my latest CyberScoop piece. 1/2
cyberscoop.com/sbom-adoptio...
The slow rise of SBOMs meets the rapid advance of AI
Despite progress from CISA and global regulators, SBOM adoption in the private sector remains slow as experts debate if AI-driven coding will improve or undermine software security and transparency.
cyberscoop.com
November 24, 2025 at 2:49 PM
Reposted by Kevin Noble
📢 The #InternetArchive is celebrating an extraordinary milestone: 1 trillion web pages preserved by the #WaybackMachine. 🎉

Join us!
📆 Weds, Oct 22

🎟️ IN-PERSON: 5–10 PM PT (SF) ⤵️
www.eventbrite.com/e/1626438133...

💻 ONLINE: 7–8 PM PT ⤵️
www.eventbrite.com/e/1626431011...

#Wayback1T
October 2, 2025 at 5:05 PM
Reposted by Kevin Noble
Fascinating article by @kimzetter.bsky.social about the 2013 Mandiant APT 1 report that revealed the identities of the Chinese PLA threat actors behind the attacks. Q&A with the main report's architect reveals behind-the-scenes details. It's a great read! www.zetter-zeroday.com/how-the-infa...
How the Infamous APT 1 Report Exposing China’s PLA Hackers Came to Be
This is the first in a series of pieces I’ll publish that take an in-depth look at significant events, people and cases in security and surveillance from the past. If there’s something you think would...
www.zetter-zeroday.com
September 11, 2025 at 3:29 PM
Reposted by Kevin Noble
What are Republicans afraid of that they closed the People’s House instead of facing a public vote?

op: @ericswalwell.bsky.social (via IG)uhh
July 25, 2025 at 12:05 PM
“Not vicious, or malicious, just de-lovely, and delicious”
June 17, 2025 at 2:43 PM
New rules
June 14, 2025 at 2:05 PM
Reposted by Kevin Noble
How Syrian army officers in final days of war with opposition were duped into 1) disclosing info to fake website about their rank/location and corps/division/brigade and 2) installing phone app that was actually spyware that recorded keystrokes, stole files/photos/call log and spied thru camera/mic
How a Spyware App Compromised Assad’s Army
An investigation reveals how a cyberattack exploited soldiers' vulnerabilities and may have changed the course of the Syrian conflict
newlinesmag.com
June 3, 2025 at 11:28 AM
Reposted by Kevin Noble
Failures in cybersecurity practices at a software company that helps federal agencies manage investigations and FOIA requests allowed two employees who had previously been convicted of hacking to delete government databases
Hack of Contractor Was at Root of Massive Federal Data Breach
Failures in cybersecurity practices at a software company that helps federal agencies manage investigations and FOIA requests allowed two convicted hackers to delete databases, according to internal d...
www.bloomberg.com
May 21, 2025 at 1:54 PM
Reposted by Kevin Noble
HEADS-UP! Professor Thomas Rid is a guest buddy on the pod this week. Currently cooking in the lab 😍🔥 @ridt.bsky.social

Listen, watch, subscribe!

Apple: bit.ly/3budprob
YouTube: bit.ly/TBP-YT
Spotify: bit.ly/3DH5wEO
Three Buddy Problem
Technology Podcast · Updated Weekly · The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware,...
bit.ly
April 25, 2025 at 3:10 PM
Reposted by Kevin Noble
And no one in America doubts why he's doing this.
April 9, 2025 at 4:20 PM
Reposted by Kevin Noble
The crypto-chuds are laying the groundwork for the next financial crisis.

The below tweet -- thanks, KoM -- sounds arcane, sounds like minutiae, but these are the mechanisms which a future financial crisis are built upon.

Now is a great time to be committing fraud via crypto.
This will eventually blow up and wreak havoc in ways people can’t even imagine. 👇🏼

Pin it.
April 5, 2025 at 5:55 PM
Reposted by Kevin Noble
NEW POD ALERT! We cover the NSA director firing, Ivanti's latest 0day screw-up, risks from China's robotics dominance, Microsoft AI finding bootloader vulns. @jags.bsky.social @craiu.bsky.social

PLUS, rave reviews for Bunnie Huang's Black Hat Asia keynote!
securityconversations.com/episode/nsa-...
NSA director fired, Ivanti's 0day screw-up, backdoor in robot dogs - Security Conversations
Three Buddy Problem – Episode 41: Costin and Juanito join the show from Black Hat Asia in Singapore. We discuss Bunnie Huang's keynote on hardware […]
securityconversations.com
April 4, 2025 at 5:29 PM
Reposted by Kevin Noble
Thanks again for having me on the Three Buddy (& a Buddy) Problem podcast @ryanaraine.bsky.social @jags.bsky.social & @craiu.bsky.social !
It was great chatting with you about Chinese threat intel, CISA cuts, & spyware that dare not speak its name. Turning this into a musical episode was a fun bonus
March 24, 2025 at 2:57 PM
Reposted by Kevin Noble
Speaking at Frontiers of Innovation Day at #SXSW at 1pm - free registration here ✌️ lu.ma/v4a9d6ix?tk=...
March 10, 2025 at 5:12 PM
Reposted by Kevin Noble
this is treason, and should be treated as such
March 10, 2025 at 8:35 AM
Reposted by Kevin Noble
Unsealed documents indicating significant Russian interference in domestic U.S. affairs. The thematic propaganda themes are interesting. Modern technologies in use to spread content & analyze its reach, including psychological operations. www.justice.gov/archives/opa...
March 8, 2025 at 5:57 PM
Reposted by Kevin Noble
NEW POD ALERT: Revisiting the US/Russia cyber stand down order and the diplomatic optics. Plus, a dissection of ‘The Lamberts’ and connections to US intelligence agencies, attribution around ‘Operation Triangulation’, VMware 0days and i-Soon indictments securityconversations.com/episode/revi...
Revisiting the Lamberts, i-Soon indictments, VMware zero-days - Security Conversations
Three Buddy Problem – Episode 37: This week, we revisit the public reporting on a US/Russia cyber stand down order, CISA declaring no change to […]
securityconversations.com
March 8, 2025 at 6:27 PM
Reposted by Kevin Noble
Listen up. I didn't want to say this earlier b/c maybe it wasn't obvious to them, but the Russian conspiracy that is now in charge of our executive branch is also in control over the .gov DNS zone file. The entire thing.

IDK what this means for .gov content indexed on sites like archive.org […]
Original post on infosec.exchange
infosec.exchange
March 2, 2025 at 12:26 AM
Reposted by Kevin Noble
In a normal relationship with an enemy turned ally, we wouldn’t immediately stop contingency planning.
Exclusive: Hegseth orders Cyber Command to stand down on Russia planning
The secretary of Defense has ordered U.S. Cyber Command to stand down from all planning against Russia, including offensive digital actions, sources tell Recorded Future News.
therecord.media
February 28, 2025 at 8:48 PM
Reposted by Kevin Noble
One of the best write ups I've found on the Russian propaganda model "Firehose of Falsehood" how it works and counter measures.

www.rand.org/pubs/perspec...
Russia's “Firehose of Falsehood” Propaganda Model
Russia's propaganda model is high-volume and multichannel, and it disseminates messages without regard for the truth. It is rapid, continuous, and repetitive, and it does not commit to consistency.
www.rand.org
February 23, 2025 at 7:14 PM
Reposted by Kevin Noble
If you're having trouble tracking all of the executive orders, blog posts and other actions coming from the executive office, as well as policy changes and legislative developments, this site -- 47 Watch - is tracking them. It's bare bones, but useful

47-watch.com/index.html
47-watch.com
February 21, 2025 at 5:23 PM
Reposted by Kevin Noble
I gave a day 1 closing keynote at DistrictCon yesterday. Surprisingly, it was a security talk about memory safety.

Slides are here:
docs.google.com/presentation...
Memory Safety
Is this memory safety here in the room with us? Halvar Flake / Thomas Dullien DistrictCon 0 2025
docs.google.com
February 22, 2025 at 11:40 AM
Reposted by Kevin Noble
I wonder if he mentioned this in his job interview for DOGE. I wonder if it helped him get the job.
Teenage DOGE worker Edward Coristine is grandson of former KGB spy Valery Martynov who was an officer in Line X - the technical espionage division of the KGB. Martynov became a double agent after FBI recruited him and began feeding Soviet secrets to the Bureau

www.jacobsilverman.com/p/prominent-...
Prominent DOGE Staffer Is Grandson Of Turncoat KGB Spy
Edward “Big Balls” Coristine happens to be the descendant of Valery Martynov, a KGB agent who spied for the US.
www.jacobsilverman.com
February 21, 2025 at 7:29 PM